IPMediumSignal 25/100
139.214.151.6
Location
Jilin, Jilin
ASN
AS4837
China Unicom Jilin Province Network
First Seen
Jul 5, 2025
Last Seen
Apr 7, 2026
Found in 6 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
25%
Signal Score
25 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
China
RegionJilin, Jilin
ASNAS4837
OrganizationChina Unicom Jilin Province Network
Feed Intelligence Summary
6 reports25% confidence
6
Source reports
25%
Confidence score
Category tags
abuseactive scanactive scanningadbhoney honeypotasiaattackbad reputationbotnetbotnet activitybrute forcechinacisco devicecisco exploitation attemptscommand and controlcommunication protocolcowrie attackcowrie honeypotcredential accesscredential stuffingdata exfiltrationdata store exposuredecoy systemdevice managementdionaea attackdionaea honeypotdistributed attacksenterprise networkingexploitation activityheralding protocol activityhoneytrap honeypotidentity & access exploitationindicatorinitial accessinjection activitylamplamp attacklamp server targetingmalicious activitymalicious softwaremalwaremalware behaviourmalware capturenetworknetwork infrastructurenetwork intrusion attemptnetwork probingnetwork scanningnetwork securityprocess injectionreconnaissanceresearchedresource hijackingscannersentrypeer attacksentrypeer botnetsftp attacksip brute forcessh attackssh monitoringt1021t1040t1041t1055t1059t1071.001t1078t1110t1110.002t1190t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1595t1595.001t1595.002t1595.003telecommunicationsthreat actorthreat detectionthreat intelligencetor nodevoipvoip attack
Activity Timeline
Apr 7Apr 7
Threat Activity Heatmap
· Peak: 2026-04-07LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
25
SIGNAL
Signal Score
25%
Confidence
6
Reports
First seenJul 5, 2025
Last seenApr 7, 2026
GeolocationCN
CountryChina
LocationJilin, Jilin
ASNAS4837
OrgChina Unicom Jilin Province Network
Coords43.8800, 125.3247
VirusTotal
Not checked
WHOIS
- description
- 2025-07-05T11:13:34.967Z Honeypot : Adbhoney : EventID/src_ip/src_url: adbhoney.session.connect139.214.151.6
- raw
- inetnum: 139.208.0.0 - 139.215.255.255 netname: UNICOM-JL descr: China Unicom Jilin province network descr: China Unicom descr: No.21,Jin-Rong Street, descr: Beijing 100033 country: CN admin-c: CH1302-AP tech-c: WT92-AP abuse-c: AC1718-AP status: ALLOCATED PORTABLE remarks: service provider remarks: -------------------------------------------------------- remarks: To report network abuse, please contact mnt-irt remarks: For troubleshooting, please contact tech-c and admin-c remarks: Report invalid contact via www.apnic.net/invalidcontact remarks: -------------------------------------------------------- mnt-by: APNIC-HM mnt-lower: MAINT-CNCGROUP mnt-lower: MAINT-CNCGROUP-JL mnt-routes: MAINT-CNCGROUP-RR mnt-irt: IRT-CU-CN last-modified: 2023-10-21T03:41:22Z source: APNIC irt: IRT-CU-CN address: No.21,Financial Street address: Beijing,100033 address: P.R.China e-mail: [email protected] abuse-mailbox: [email protected] admin-c: CH1302-AP tech-c: CH1302-AP auth: # Filtered remarks: [email protected] was validated on 2025-02-24 mnt-by: MAINT-CNCGROUP last-modified: 2025-02-24T06:16:57Z source: APNIC role: ABUSE CUCN country: ZZ address: No.21,Financial Street address: Beijing,100033 address: P.R.China phone: +000000000 e-mail: [email protected] admin-c: CH1302-AP tech-c: CH1302-AP nic-hdl: AC1718-AP remarks: Generated from irt object IRT-CU-CN remarks: [email protected] was validated on 2025-02-24 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-02-24T06:17:45Z source: APNIC person: ChinaUnicom Hostmaster nic-hdl: CH1302-AP e-mail: [email protected] address: No.21,Jin-Rong Street address: Beijing,100033 address: P.R.China phone: +86-10-66259764 fax-no: +86-10-66259764 country: CN mnt-by: MAINT-CNCGROUP last-modified: 2017-08-17T06:13:16Z source: APNIC person: Wang Tiegang nic-hdl: WT92-AP e-mail: [email protected] address: NO.3535,Renmin Street, ChangChun , address: Jilin province , 130021 , P.R. China phone: +86-0431-87022560 fax-no: +86-0431-87022420 country: CN mnt-by: MAINT-CNCGROUP-JL last-modified: 2020-07-03T00:43:16Z source: APNIC route: 139.208.0.0/13 descr: China Unicom Jilin Province Network country: CN origin: AS4837 mnt-by: MAINT-CNCGROUP-RR last-modified: 2011-03-23T06:06:01Z source: APNIC
- references
- https://github.com/telekom-security/tpotce
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 11 months ago · Last seen 2 months ago
Appeared in 6 threat reports