IOC Radar
IPMediumSignal 68/100

125.21.163.67

Location
IndiaIndia
Gurugram, OR
ASN
AS9498
Jaypee Healthcare Limited
First Seen
Oct 5, 2022
Last Seen
Mar 20, 2026
Oct 5
First Seen
1354d ago
Mar 20
Last Seen
91d ago
8
Reports
source reports
68%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
68%
Signal Score
68 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

34 techniques

Network Information

CountryINIndia
RegionGurugram, OR
ASNAS9498
OrganizationJaypee Healthcare Limited

Feed Intelligence Summary

8 reports68% confidence
8
Source reports
68%
Confidence score
Category tags
access controlactive scanningasiabotnetbrute forcecommand and controlcommunication protocolcredential accesscredential stuffingdata encryptiondata exfiltrationddos attacksdecoy systemdenial of servicedistributed attacksftpftp brute forcehttp brute forceinindiaindicatorinitial accessinternet of thingsintrusion detectioniot botnetiot/ics attackkazakhstankaznetlateral movementmalicious softwaremalwaremirai botnetnetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork traffic analysispossible botnet activitypossible reconnaissance activityprocess injectionreconnaissanceremote accessremote servicesresearchedscanscannersecurity policysmtp brute forcessh attackt1018t1021t1021.001t1021.002t1040t1046t1053t1055t1059t1059.004t1071.001t1076t1077t1083t1110t1110.001t1110.002t1110.003t1190t1486t1496t1499.001t1499.002t1499.003t1563t1565t1566t1583t1583.001t1583.002t1595t1595.001t1595.002t1595.003tcp protocoltelecommunicationsthreat intelligencethreat preventionunauthorized access attempt

Activity Timeline

1 total obs
Mar 20Mar 20

Threat Activity Heatmap

· Peak: 2026-03-20
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
68
SIGNAL
Signal Score
68%
Confidence
8
Reports
First seenOct 5, 2022
Last seenMar 20, 2026
GeolocationIN
CountryIndia
LocationGurugram, OR
ASNAS9498
OrgJaypee Healthcare Limited
Coords20.2706, 85.8334

VirusTotal

Not checked

WHOIS

description
Information from proprietary sensors in the KazNET
raw
inetnum: 125.21.163.64 - 125.21.163.95 netname: YPHE-4718794-GAUTAM-BUDH-NAGAR descr: JAYPEE HEALTHCARE LIMITED descr: n/a descr: YPHE/JAYPEE HEALTHCARE LIMITED/ descr: Jaypee Health care ltd, Sector 128 Noida 201304 NOIDA - NOD UTTAR PRADESH I ndia. descr: GAUTAM BUDH NAGAR descr: 201304 descr: UTTAR PRADESH India descr: GAUTAM-BUDH-NAGAR descr: UTTAR PRADESH descr: INDIA descr: Contact Person: SHVII KM descr: Email: descr: Phone: 877897 country: IN admin-c: NA40-AP tech-c: NA40-AP abuse-c: AB913-AP status: ASSIGNED NON-PORTABLE mnt-by: MAINT-IN-BBIL mnt-irt: IRT-BHARTI-IN last-modified: 2024-03-24T07:09:53Z source: APNIC irt: IRT-BHARTI-IN address: Bharti Airtel Ltd. address: ISP Division - Transport Network Group address: 234 , Okhla Industrial Estate, address: Phase III, New Delhi-110020, INDIA e-mail: [email protected] abuse-mailbox: [email protected] admin-c: NA40-AP tech-c: NA40-AP auth: # Filtered remarks: [email protected] remarks: [email protected] is invalid mnt-by: MAINT-IN-BBIL last-modified: 2023-05-24T13:05:19Z source: APNIC role: ABUSE BHARTIIN address: Bharti Airtel Ltd. address: ISP Division - Transport Network Group address: 234 , Okhla Industrial Estate, address: Phase III, New Delhi-110020, INDIA country: ZZ phone: +000000000 e-mail: [email protected] admin-c: NA40-AP tech-c: NA40-AP nic-hdl: AB913-AP remarks: Generated from irt object IRT-BHARTI-IN remarks: [email protected] is invalid abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2023-05-24T13:16:31Z source: APNIC person: Network Administrator nic-hdl: NA40-AP e-mail: [email protected] address: Bharti Airtel Ltd. address: ISP Division - Transport Network Group address: Plot no.16 , Udyog Vihar , Phase -IV , Gurgaon - 122015 , Haryana , INDIA address: Phase III, New Delhi-110020, INDIA phone: +91-124-4222222 fax-no: +91-124-4244017 country: IN mnt-by: MAINT-IN-BBIL last-modified: 2018-12-18T12:52:19Z source: APNIC route: 125.21.163.0/24 descr: BHARTI-IN descr: Bharti Tele-Ventures Limited descr: Class A ISP in INDIA . descr: 234 , OKHLA PHASE III , descr: NEW DELHI descr: INDIA country: IN origin: AS9498 mnt-by: MAINT-IN-BBIL last-modified: 2008-09-04T07:54:40Z source: APNIC
references
https://threats.kz

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 years ago · Last seen 3 months ago
Appeared in 8 threat reports