IOC Radar
IPMediumSignal 45/100

139.135.43.3

Location
PakistanPakistan
Lahore, PB
ASN
AS9541
Cyber Internet Services (Private) Limited
First Seen
Sep 12, 2025
Last Seen
Jun 11, 2026
Sep 12
First Seen
281d ago
Jun 11
Last Seen
9d ago
13
Reports
source reports
45%
Confidence
medium
Found in 13 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
45%
Signal Score
45 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

47 techniques

Network Information

CountryPKPakistan
RegionLahore, PB
ASNAS9541
OrganizationCyber Internet Services (Private) Limited

Feed Intelligence Summary

13 reports45% confidence
13
Source reports
45%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningaptasiaattackbad reputationbad web botbotnetbotnet activitybrute forcebrute force attackbrute-forcec2code executioncommand & controlcommand and controlcommand executioncommunication protocolcompromised systemcredential accesscredential stuffingdata exfiltrationdata store exposuredatabase securityddosddos attacksdecoy systemdenial of servicedistributed attacksexfiltrationexploitationexploitation activityexploited hosthackingidentity & access exploitationimpactindicatorinitial accessinjection activityinjection attacksinternet of thingsintrusion detectioniot botnetiot securityiot targetediot/ics attacklateral movementmalicious activitymalicious ipmalicious network activitymalicious softwaremalwaremiraimirai botnetnetworknetwork attacksnetwork intrusionnetwork probingnetwork securitynetwork trafficopenctipassword attacksphishingpkprivilege escalationprocess injectionprotocol exploitationransomwarereconnaissanceresearchedscanscannersecurity policysocradar honeypotsoftware exploitationsshssh attackt1021.001t1021.002t1021.003t1021.004t1021.006t1027t1040t1053.002t1053.005t1055t1056t1056.001t1059t1059.001t1059.003t1059.004t1071.001t1071.004t1078t1105t1110.001t1110.002t1110.003t1110.004t1133t1190t1199t1203t1204.002t1486t1496t1497.001t1499.001t1499.002t1499.003t1539t1550t1552t1555t1565t1566t1566.001t1566.002t1595t1595.001t1595.002t1595.003tcptcp protocoltelnettelnet threatthreat actorthreat intelligencethreat preventiontor nodeweb app attackweb application attackweb exploitation

Activity Timeline

1 total obs
Jun 11Jun 11

Threat Activity Heatmap

· Peak: 2026-06-11
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
45
SIGNAL
Signal Score
45%
Confidence
13
Reports
First seenSep 12, 2025
Last seenJun 11, 2026
GeolocationPK
CountryPakistan
LocationLahore, PB
ASNAS9541
OrgCyber Internet Services (Private) Limited
Coords31.4859, 74.3735

VirusTotal

Not checked

WHOIS

raw
inetnum: 139.135.40.0 - 139.135.43.255 netname: CYBERNET-PK descr: Cyber Internet Services Pakistan country: PK admin-c: AQ84-AP tech-c: AQ84-AP abuse-c: AC1727-AP status: ASSIGNED NON-PORTABLE mnt-by: MAINT-PK-CYBERNET mnt-irt: IRT-CYBERNET-PK last-modified: 2024-12-05T05:52:51Z source: APNIC irt: IRT-CYBERNET-PK address: A904, 9th Floor,Lakson Bldg 3,Sarwar Shaheed Rd,Karachi-74200 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: AQ84-AP tech-c: AQ84-AP auth: # Filtered remarks: [email protected] was validated on 2025-04-24 mnt-by: MAINT-PK-AQ last-modified: 2025-09-04T01:01:10Z source: APNIC role: ABUSE CYBERNETPK country: ZZ address: A904, 9th Floor,Lakson Bldg 3,Sarwar Shaheed Rd,Karachi-74200 phone: +000000000 e-mail: [email protected] admin-c: AQ84-AP tech-c: AQ84-AP nic-hdl: AC1727-AP remarks: Generated from irt object IRT-CYBERNET-PK remarks: [email protected] was validated on 2025-04-24 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-04-24T11:46:47Z source: APNIC person: Amjad Qasmi address: A904, 9th Floor,Lakson Bldg 3,Sarwar Shaheed Rd,Karachi-74200 country: PK phone: +92-021-38400654 e-mail: [email protected] nic-hdl: AQ84-AP abuse-mailbox: [email protected] mnt-by: MAINT-PK-AQ last-modified: 2021-08-31T07:15:27Z source: APNIC route: 139.135.43.0/24 origin: AS24440 descr: Cyber Internet Services (Private) Limited A - 904 9th Floor Lakson Square Building No. 3 No. 3, Sarwar Shaheed Road Karachi-74200 Pakistan mnt-by: MAINT-PK-CYBERNET last-modified: 2024-02-20T06:09:27Z source: APNIC route: 139.135.43.0/24 origin: AS9541 descr: Cyber Internet Services (Private) Limited A - 904 9th Floor Lakson Square Building No. 3 No. 3, Sarwar Shaheed Road Karachi-74200 Pakistan mnt-by: MAINT-PK-CYBERNET last-modified: 2020-10-12T08:51:21Z source: APNIC
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 9 months ago · Last seen 9 days ago
Appeared in 13 threat reports