IOC Radar
IPHighVerifiedSignal 77/100

147.1.89.132

Location
United StatesUnited States
Reston, Virginia
First Seen
Apr 16, 2026
Last Seen
Apr 17, 2026
Apr 16
First Seen
59d ago
Apr 17
Last Seen
58d ago
5
Reports
source reports
77%
Confidence
high
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
77%
Signal Score
77 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

40 techniques

Network Information

CountryUSUnited States
RegionReston, Virginia
OrganizationBechtel Corporation

Feed Intelligence Summary

5 reports77% confidence
5
Source reports
77%
Confidence score
Category tags
abuseagentalienvault_ransomwareanalyzer resuansiaptarchbad reputationbodybypasscanadacapability attck mbcclassclickclosecodecontactcopycryptocryptocurrencycustom viewdata connectiondcomdomaindwordeducationencrypted training dataerrorevent viewerexifexploitation activityfalseformatgenerateguardhybridindicatorinstallioclayerlayer tlslevellinkid787651localmalwaremalware classificationmintnetworknorth americaonlineopenpasspathpcefpowershellpushransomwareresearchedresultsrootsandboxservicesha-256silentsocradarsolanastaticstatic analyzerstreamstringssubmitt1006t1007t1012t1021t1027t1036t1047t1055t1056t1057t1068t1069t1071t1072t1074t1082t1083t1105t1106t1112t1114t1115t1124t1129t1133t1134t1135t1480t1497t1543t1547t1548t1555t1558t1564t1565t1569t1573t1574t1585targetthreat actorthrttor nodetraceixtraceix entertrojanunited statesuploadvarist hybridviruswnp transportwsse

Activity Timeline

1 total obs
Apr 17Apr 17

Threat Activity Heatmap

· Peak: 2026-04-17
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
77
SIGNAL
Signal Score
77%
Confidence
5
Reports
First seenApr 16, 2026
Last seenApr 17, 2026
Verified IOC
GeolocationUS
CountryUnited States
LocationReston, Virginia
OrgBechtel Corporation
Coords37.7510, -97.8220

VirusTotal

Not checked

WHOIS

description
CC=US ASN=ASNone
raw
NetRange: 147.1.0.0 - 147.1.255.255 CIDR: 147.1.0.0/16 NetName: BECHTEL NetHandle: NET-147-1-0-0-1 Parent: NET147 (NET-147-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: Bechtel Corporation (BECHTE-1-Z) RegDate: 1991-03-11 Updated: 2023-06-30 Ref: https://rdap.arin.net/registry/ip/147.1.0.0 OrgName: Bechtel Corporation OrgId: BECHTE-1-Z Address: 12011 Sunset Hills Road City: Reston StateProv: VA PostalCode: 20190 Country: US RegDate: 2023-06-30 Updated: 2023-06-30 Ref: https://rdap.arin.net/registry/entity/BECHTE-1-Z OrgNOCHandle: NOC1862-ARIN OrgNOCName: Network Operations Center OrgNOCPhone: +1-602-368-1111 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/NOC1862-ARIN OrgAbuseHandle: ABUSE5496-ARIN OrgAbuseName: Abuse POC OrgAbusePhone: +1-602-368-7400 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE5496-ARIN OrgTechHandle: MBM50-ARIN OrgTechName: McCaffrey, Michael B. OrgTechPhone: +1-571-392-6501 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/MBM50-ARIN OrgTechHandle: CEI4-ARIN OrgTechName: Indacochea, Carlos Eduardo OrgTechPhone: +1-602-368-0100 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/CEI4-ARIN RTechHandle: NA11-ORG-ARIN RTechName: Network Administrator RTechPhone: +1-415-768-1117 RTechEmail: [email protected] RTechRef: https://rdap.arin.net/registry/entity/NA11-ORG-ARIN
references
https://traceix.com/search?sha256=4dfde25f15d828029e492ccdffea343500598c3d0aac896792d97b62ce2fc440&wait=1&tab=av, http://hybrid-analysis.com/sample/6f1886652984a97cd01fa8a0c2a5a029e90986d51b74c4b61cf81f23e1a457ae/69e146d2c0ff5214930f108b, https://app.threat.zone/submission/2630d729-3f2b-41cc-bfad-0fa3bc3cefa2/overview, https://www.filescan.io/uploads/69e1421e5ea31bc68a320574/reports/c43ffdc1-bc0f-40d7-8abc-8e515eff74c5/ioc

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 month ago · Last seen 1 month ago
Appeared in 5 threat reports