IOC Radar
IPMediumSignal 29/100

142.4.215.160

Location
CanadaCanada
Montreal, Quebec
ASN
AS16276
OVH Hosting, Inc.
First Seen
Nov 25, 2021
Last Seen
May 27, 2026
Nov 25
First Seen
1661d ago
May 27
Last Seen
17d ago
8
Reports
source reports
29%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
29%
Signal Score
29 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

32 techniques

Network Information

CountryCACanada
RegionMontreal, Quebec
ASNAS16276
OrganizationOVH Hosting, Inc.

Feed Intelligence Summary

8 reports29% confidence
8
Source reports
29%
Confidence score
Category tags
abuseactive scanactive scanningauto-generated securitybad reputationbotnetbotnet activitybrute forcebrute force attackbrute-forcecacanadacommand and controlcommunication protocolcredential accesscredential stuffingdata exfiltrationdata store exposureddosdecoy systemdenial of servicedistributed attackseuropeexploit attemptsexploitation activityftpftp brute forcehackinghttp brute forcehttp scanneridentity & access exploitationindicatorinitiator ipinjection activityintrusion detectionlateral movementmalicious softwaremalwaremalware propagationmalware scanningnetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningnorth americapassword attacksprocess injectionreconnaissanceremote accessremote servicesresearchedscannersecurity operationsservice scansmtp brute forcesql injection attemptsssh attackt1021t1021.001t1021.004t1040t1046t1055t1059t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1187t1190t1199t1210t1486t1496t1499.001t1499.002t1499.003t1563t1565t1588t1595t1595.001t1595.002t1595.003targeting databasetcp protocolthreat intelligencetor nodetsecuk basedunited kingdomweb traffic

Activity Timeline

1 total obs
May 27May 27

Threat Activity Heatmap

· Peak: 2026-05-27
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
29
SIGNAL
Signal Score
29%
Confidence
8
Reports
First seenNov 25, 2021
Last seenMay 27, 2026
GeolocationCA
CountryCanada
LocationMontreal, Quebec
ASNAS16276
OrgOVH Hosting, Inc.
Coords43.6319, -79.3716

VirusTotal

Not checked

WHOIS

raw
NetRange: 142.4.192.0 - 142.4.223.255 CIDR: 142.4.192.0/19 NetName: OVH-ARIN-3 NetHandle: NET-142-4-192-0-1 Parent: NET142 (NET-142-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: OVH Hosting, Inc. (HO-2) RegDate: 2012-07-23 Updated: 2012-07-23 Ref: https://rdap.arin.net/registry/ip/142.4.192.0 OrgName: OVH Hosting, Inc. OrgId: HO-2 Address: 800-1801 McGill College City: Montreal StateProv: QC PostalCode: H3A 2N4 Country: CA RegDate: 2011-06-22 Updated: 2025-09-04 Ref: https://rdap.arin.net/registry/entity/HO-2 OrgTechHandle: NOC11876-ARIN OrgTechName: NOC OrgTechPhone: +1-855-684-5463 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/NOC11876-ARIN OrgAbuseHandle: ABUSE3956-ARIN OrgAbuseName: Abuse OrgAbusePhone: +1-855-684-5463 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE3956-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 17 days ago
Appeared in 8 threat reports