IOC Radar
IPMediumSignal 76/100

138.84.59.53

Location
BrazilBrazil
Brasilia, Federal District
ASN
AS14593
Starlink Brazil Serviços de Internet Ltd
First Seen
Feb 4, 2026
Last Seen
Apr 23, 2026
Feb 4
First Seen
130d ago
Apr 23
Last Seen
53d ago
10
Reports
source reports
76%
Confidence
medium
Found in 10 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

3 techniques

Network Information

CountryBRBrazil
RegionBrasilia, Federal District
ASNAS14593
OrganizationStarlink Brazil Serviços de Internet Ltd

Feed Intelligence Summary

10 reports76% confidence
10
Source reports
76%
Confidence score
Category tags
active scanactive scanningaptbrazilddosddos attackexploitation activityimapimap attackindicatornetworkreconnaissanceresearchedscannersmtpsmtp attackersouth americat1595.001t1595.002t1595.003threat actortor node

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
10
Reports
First seenFeb 4, 2026
Last seenApr 23, 2026
GeolocationBR
CountryBrazil
LocationBrasilia, Federal District
ASNAS14593
OrgStarlink Brazil Serviços de Internet Ltd
Coords-15.7975, -47.8919

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
inetnum: 138.84.59.0/24 status: reallocated aut-num: N/A owner: Starlink Brazil Serviços de Internet Ltd ownerid: BR-SBSI11-LACNIC responsible: Luis Anzola address: Rua Líbero Badaró 293, 20th floor, suite 21-B, room 01, 21-B, address: 01009-000 - Sao Paulo - country: BR phone: +1 3103636000 owner-c: SKH4 tech-c: SKH4 abuse-c: SKH4 inetrev: 138.84.59.0/24 nserver: NS1-38.AZUREGOV-DNS.US nsstat: 20260414 AA nslastaa: 20260414 nserver: NS2-38.AZUREGOV-DNS.US nsstat: 20260414 AA nslastaa: 20260414 nserver: NS3-38.AZUREGOV-DNS.US nsstat: 20260414 AA nslastaa: 20260414 nserver: NS4-38.AZUREGOV-DNS.US nsstat: 20260414 AA nslastaa: 20260414 created: 20251018 changed: 20251018 inetnum-up: 138.84.32.0/19 nic-hdl: SKH4 person: Reyan Pina e-mail: [email protected] address: 1 Rocket Rd, 1, - address: 90250 - Hawthorne - CA country: US phone: +1 3103636000 [0000] created: 20200813 changed: 20260213

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 months ago · Last seen 1 month ago
Appeared in 10 threat reports