IOC Radar
IPMediumSignal 92/100

146.88.240.4

Location
United StatesUnited States
Dallas, Texas
ASN
AS20052
Arbor Networks, Inc.
First Seen
Aug 26, 2020
Last Seen
Feb 9, 2026
Aug 26
First Seen
2126d ago
Feb 9
Last Seen
134d ago
19
Reports
source reports
92%
Confidence
medium
Found in 19 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
92%
Signal Score
92 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

42 techniques

Network Information

CountryUSUnited States
RegionDallas, Texas
ASNAS20052
OrganizationArbor Networks, Inc.

Feed Intelligence Summary

19 reports92% confidence
19
Source reports
92%
Confidence score
Category tags
abuseaccess controlaccount compromiseactive scanningalaskaapplication layer protocolattempted intrusionaustraliaauthentication attackawsawsaubeningbening scannerblacklisted ipbotnetbrute forcebrute force attackbrute force attackscloud infrastructurecloud infrastructure attackcloud servicescommand and controlcommunication protocolcredential accesscredential harvestingcredential stuffingdata exfiltrationddos attackdecoy systemdenial of servicedistributed attackseuropeexploit targetingftp attacksftp brute forcehttp scannerhttp scanninghttpsindicatorinformation gatheringinfrastructure acquisitionreconnaissanceintrusion detectioniplistkfsensor honeypotmadridmalicious softwaremalwaremalware capturemanualmysql brute forcenetscout_tiisi-benignnetworknetwork activitynetwork intrusionnetwork monitoringnetwork scanningnetwork securitynetwork service scanningnorth americaoceaniaos credential dumpingpassword attackpassword attacksphishing attackprocess injectionprotocol exploitationreconnaissanceremote accessremote servicesresearchedresource hijackingsansscannerscannersscanning activityscripting attackssecurity operationssocial engineeringspainssh attacksystem discoveryt1021t1021.001t1021.006t1040t1046t1053t1053.005t1055t1059t1059.001t1059.004t1059.007t1068t1071.001t1076t1078t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1496t1499.001t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1583t1587.001t1590.001t1592t1595t1595.001t1595.002t1595.003telecommunicationstelnet threatthreat intelligenceunauthorized access attemptsunited statesunknown threat actorus-akverified-benignvnc protocolvoipweb attackweb exploitationweb traffic

Activity Timeline

1 total obs
Feb 9Feb 9

Threat Activity Heatmap

· Peak: 2026-02-09
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
92
SIGNAL
Signal Score
92%
Confidence
19
Reports
First seenAug 26, 2020
Last seenFeb 9, 2026
GeolocationUS
CountryUnited States
LocationDallas, Texas
ASNAS20052
OrgArbor Networks, Inc.
Coords32.7767, -96.7970

VirusTotal

Not checked

WHOIS

description
Honeypot
raw
NetRange: 146.88.240.0 - 146.88.255.255 CIDR: 146.88.240.0/20 NetName: ARBORN NetHandle: NET-146-88-240-0-1 Parent: NET146 (NET-146-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: Arbor Networks, Inc. (ARBORN) RegDate: 2016-10-27 Updated: 2023-10-24 Comment: NETSCOUT | Arbor Networks Research Scanner Comment: Comment: https://www.internet-albedo.net/ Ref: https://rdap.arin.net/registry/ip/146.88.240.0 OrgName: Arbor Networks, Inc. OrgId: ARBORN Address: 2727 S. State St. Address: Suite 200 City: Ann Arbor StateProv: MI PostalCode: 48104 Country: US RegDate: 2001-01-24 Updated: 2011-09-24 Ref: https://rdap.arin.net/registry/entity/ARBORN OrgTechHandle: HOSTM187-ARIN OrgTechName: hostmaster OrgTechPhone: +1-734-327-0000 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/HOSTM187-ARIN OrgAbuseHandle: HOSTM187-ARIN OrgAbuseName: hostmaster OrgAbusePhone: +1-734-327-0000 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/HOSTM187-ARIN RAbuseHandle: ASERT-ARIN RAbuseName: ASERT Abuse RAbusePhone: +1-734-327-0000 RAbuseEmail: [email protected] RAbuseRef: https://rdap.arin.net/registry/entity/ASERT-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 5 years ago · Last seen 4 months ago
Appeared in 19 threat reports