IOC Radar
IPMediumSignal 84/100

122.187.246.145

Location
IndiaIndia
Bengaluru, Karnataka
ASN
AS9498
Bharti Telenet Ltd.
First Seen
Feb 21, 2026
Last Seen
May 29, 2026
Feb 21
First Seen
104d ago
May 29
Last Seen
8d ago
12
Reports
source reports
84%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
84%
Signal Score
84 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

10 techniques

Network Information

CountryINIndia
RegionBengaluru, Karnataka
ASNAS9498
OrganizationBharti Telenet Ltd.

Feed Intelligence Summary

12 reports84% confidence
12
Source reports
84%
Confidence score
Category tags
active scanactive scanningaptasiabrute forcebrute force attackbrute-forcecredential accesscredential stuffingddosddos attackdenial of serviceexploitation activityexploited hosthackingidentity & access exploitationimapimap attackinindiaindicatornetworkpassword attacksphishingreconnaissanceresearchedscannerself-signedsmtpsmtp attackersshssh attackt1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1595.001t1595.002t1595.003threat actortor nodeweb app attackweb application attackweb exploitation

Activity Timeline

1 total obs
May 29May 29

Threat Activity Heatmap

· Peak: 2026-05-29
Less
More
Mon
Wed
Fri
Jun
·
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
84
SIGNAL
Signal Score
84%
Confidence
12
Reports
First seenFeb 21, 2026
Last seenMay 29, 2026
GeolocationIN
CountryIndia
LocationBengaluru, Karnataka
ASNAS9498
OrgBharti Telenet Ltd.
Coords20.0063, 77.0060

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
inetnum: 122.187.0.0 - 122.187.255.255 netname: BNLD-209392-NewDelhi descr: BHARTI TELENET LTD. NEW DELHI descr: 234 descr: Okhla Industrial Estate descr: descr: New Delhi descr: Delhi descr: India descr: Contact Person: Raghvendra Singh descr: Email: [email protected] descr: Phone: 011-41612222 country: IN admin-c: NA40-AP tech-c: NA40-AP abuse-c: AB913-AP status: ALLOCATED NON-PORTABLE mnt-by: MAINT-IN-BBIL mnt-irt: IRT-BHARTI-IN last-modified: 2021-10-28T04:48:50Z source: APNIC irt: IRT-BHARTI-IN address: Bharti Airtel Ltd. address: ISP Division - Transport Network Group address: 234 , Okhla Industrial Estate, address: Phase III, New Delhi-110020, INDIA e-mail: [email protected] abuse-mailbox: [email protected] admin-c: NA40-AP tech-c: NA40-AP auth: # Filtered remarks: [email protected] remarks: [email protected] is invalid mnt-by: MAINT-IN-BBIL last-modified: 2025-11-18T00:26:19Z source: APNIC role: ABUSE BHARTIIN country: ZZ address: Bharti Airtel Ltd. address: ISP Division - Transport Network Group address: 234 , Okhla Industrial Estate, address: Phase III, New Delhi-110020, INDIA phone: +000000000 e-mail: [email protected] admin-c: NA40-AP tech-c: NA40-AP nic-hdl: AB913-AP remarks: Generated from irt object IRT-BHARTI-IN remarks: [email protected] is invalid abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-09-04T17:25:50Z source: APNIC person: Network Administrator nic-hdl: NA40-AP e-mail: [email protected] address: Bharti Airtel Ltd. address: ISP Division - Transport Network Group address: Plot no.16 , Udyog Vihar , Phase -IV , Gurgaon - 122015 , Haryana , INDIA address: Phase III, New Delhi-110020, INDIA phone: +91-0124 4282528 fax-no: +91-124-4244017 country: IN mnt-by: MAINT-IN-BBIL last-modified: 2026-03-19T10:53:18Z source: APNIC route: 122.187.246.0/24 origin: AS9498 descr: Bharti Airtel Limited Transport Network Group 234, Okhla Phase III mnt-by: MAINT-IN-BBIL last-modified: 2023-12-08T08:10:52Z source: APNIC
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 months ago · Last seen 8 days ago
Appeared in 12 threat reports