IOC Radar
IPMediumSignal 80/100

143.92.32.30

Location
Hong KongHong Kong
Sheung Wan, Hong Kong
ASN
AS152194
Rackip Consultancy Pte. LTD
First Seen
Sep 2, 2024
Last Seen
May 28, 2026
Sep 2
First Seen
650d ago
May 28
Last Seen
17d ago
14
Reports
source reports
80%
Confidence
medium
Found in 14 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
80%
Signal Score
80 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

13 techniques

Network Information

CountryHKHong Kong
RegionSheung Wan, Hong Kong
ASNAS152194
OrganizationRackip Consultancy Pte. LTD

IP Category

VPN
VPN exit node

Feed Intelligence Summary

14 reports80% confidence
14
Source reports
80%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningaptasiabad reputationbad web botbotnet activitybrute forcebrute force attackbrute force attackerbrute-forcecredential accesscredential stuffingdata exfiltrationdata store exposuredatabase securityddosddos attackdenial of serviceexploitation activityexploited hostfraud ordershackinghkhong kongidentity & access exploitationindicatorinjection activityinjection attacksmalwarenetworkpassword attacksreconnaissanceresearchedscams & fraudscannersecurity policysingaporespamsql injectionsshssh attackt1059.003t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1499.001t1499.002t1595.001t1595.002t1595.003targeting databasethreat actorthreat preventiontor nodevpnvpn ipwebweb app attackweb application attackweb exploitationweb spam

Activity Timeline

1 total obs
May 28May 28

Threat Activity Heatmap

· Peak: 2026-05-28
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
80
SIGNAL
Signal Score
80%
Confidence
14
Reports
First seenSep 2, 2024
Last seenMay 28, 2026
GeolocationHK
CountryHong Kong
LocationSheung Wan, Hong Kong
ASNAS152194
OrgRackip Consultancy Pte. LTD
Coords22.2868, 114.1520
VPN

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected performing web attacks against Cloudflare honeypot edge
raw
inetnum: 143.92.32.0 - 143.92.47.255 netname: CTG92-32-HK descr: CTG Server Ltd. country: HK admin-c: RCPL3-AP tech-c: RCPL3-AP abuse-c: AC2487-AP status: ALLOCATED NON-PORTABLE mnt-by: MAINT-RCPL-SG mnt-irt: IRT-CTG-HK last-modified: 2021-10-04T01:27:00Z source: APNIC irt: IRT-CTG-HK address: 202 ,2/F Kam Sang BLDG 257,Des Voeux RD Central Hong Kong e-mail: [email protected] abuse-mailbox: [email protected] admin-c: RCPL3-AP tech-c: RCPL3-AP auth: # Filtered remarks: [email protected] remarks: [email protected] was validated on 2025-01-15 mnt-by: MAINT-RCPL-SG last-modified: 2025-01-15T01:11:37Z source: APNIC role: ABUSE CTGHK country: ZZ address: 202 ,2/F Kam Sang BLDG 257,Des Voeux RD Central Hong Kong phone: +000000000 e-mail: [email protected] admin-c: RCPL3-AP tech-c: RCPL3-AP nic-hdl: AC2487-AP remarks: Generated from irt object IRT-CTG-HK remarks: [email protected] was validated on 2025-01-15 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-01-15T01:11:59Z source: APNIC role: RACKIP CONSULTANCY PTE LTD administrator address: 399 Chai Wan Road, Chai Wan, Hong Kong country: SG phone: +603-7806-1316 fax-no: +603-7806-1316 e-mail: [email protected] admin-c: RCPL3-AP tech-c: RCPL3-AP nic-hdl: RCPL3-AP mnt-by: MAINT-RCPL-SG last-modified: 2021-08-30T06:13:42Z source: APNIC route: 143.92.32.0/24 origin: AS152194 descr: RACKIP CONSULTANCY PTE. LTD. No. 3, Pemimpin Drive, #07-04 Lip Hing, Industrial Building, mnt-by: MAINT-RCPL-SG last-modified: 2024-03-31T12:29:50Z source: APNIC route: 143.92.32.0/24 origin: AS64050 descr: RACKIP CONSULTANCY PTE. LTD. No. 3, Pemimpin Drive, #07-04 Lip Hing, Industrial Building, mnt-by: MAINT-RCPL-SG last-modified: 2023-10-11T08:29:15Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 17 days ago
Appeared in 14 threat reports