IOC Radar
IPMediumSignal 90/100

147.78.103.215

Location
BulgariaBulgaria
Sofia, Sofia-Capital
First Seen
Oct 26, 2023
Last Seen
Dec 7, 2024
Oct 26
First Seen
970d ago
Dec 7
Last Seen
562d ago
3
Reports
source reports
90%
Confidence
medium
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
90%
Signal Score
90 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

3 techniques

Network Information

CountryBGBulgaria
RegionSofia, Sofia-Capital
OrganizationOpen Solutions Ltd

Feed Intelligence Summary

3 reports90% confidence
3
Source reports
90%
Confidence score
Category tags
abuseaccess controlactive scanningindicatornetworkreconnaissanceresearchedscannersecurity policyt1595.001t1595.002t1595.003threat prevention

Activity Timeline

1 total obs
Dec 7Dec 7

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

The IP address `147.78.103.215` has been identified as a high-risk Indicator of Compromise (IOC), corroborated by a score of 90.1 and its presence across multiple reputable threat intelligence feeds. This finding signals a significant potential threat to organizational security, as such an IP is likely involved in malicious or highly suspicious activities. If detected within the organizational environment, this IOC could represent ongoing reconnaissance efforts, serving as a critical precursor t…

Threat ScoreHigh Risk
90
SIGNAL
Signal Score
90%
Confidence
3
Reports
First seenOct 26, 2023
Last seenDec 7, 2024
GeolocationBG
CountryBulgaria
LocationSofia, Sofia-Capital
OrgOpen Solutions Ltd
Coords42.6260, 23.3841

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 years ago · Last seen 1 year ago
Appeared in 3 threat reports