IOC Radar
IPMediumSignal 30/100

149.40.62.30

Location
United StatesUnited States
Seattle, Washington
ASN
AS212238
Datacamp Limited
First Seen
Dec 8, 2024
Last Seen
Jun 5, 2026
Dec 8
First Seen
562d ago
Jun 5
Last Seen
18d ago
9
Reports
source reports
30%
Confidence
medium
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
30%
Signal Score
30 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

38 techniques

Network Information

CountryUSUnited States
RegionSeattle, Washington
ASNAS212238
OrganizationDatacamp Limited

IP Category

VPN
VPN exit node

Feed Intelligence Summary

9 reports30% confidence
9
Source reports
30%
Confidence score
Category tags
active scanactive scanningattackbad web botbotnetbotnet activitybrute forcebrute force attackciscocisco devicecommand and controlcommunication protocolcowriecowrie honeypotcredential accesscredential stuffingdarkforumsdata exfiltrationdata store exposureddosdecoy systemdenial of servicedevice managementdionaeadionaea honeypotdistributed attacksenterprise networkingexploit attemptsexploitation activityftpftp brute forcehoneytrap honeypothttp brute forceidentity & access exploitationinformation technologyinitial accessinjection activityit infrastructurelamplateral movementmalicious activitymalicious softwaremalwaremalware behaviourmalware capturemalware propagationmalware scanningnetworknetwork infrastructurenetwork intrusion attemptsnetwork probingnetwork scanningnetwork securitynorth americapassword attacksprocess injectionproxyreconnaissanceremote accessremote servicesresearchedresource hijackingscannersentrypeer botnetsftpsftp attacksip attackssmtp brute forcesoftware developmentspamsql injection attemptssshssh attackssh monitoringt1021t1021.001t1021.004t1040t1041t1046t1055t1059t1059.004t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1187t1190t1199t1203t1204.002t1210t1486t1496t1499.001t1499.002t1499.003t1563t1565t1583t1583.001t1588t1595t1595.001t1595.002t1595.003targeting databasetelecommunicationsthreat actorthreat detectionthreat intelligencetor nodeunited statesusvoipvoip attackvpnweb application attackweb exploitation

Activity Timeline

1 total obs
Jun 5Jun 5

Threat Activity Heatmap

· Peak: 2026-06-05
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
30
SIGNAL
Signal Score
30%
Confidence
9
Reports
First seenDec 8, 2024
Last seenJun 5, 2026
GeolocationUS
CountryUnited States
LocationSeattle, Washington
ASNAS212238
OrgDatacamp Limited
Coords40.5237, -74.4151
VPN

VirusTotal

Not checked

WHOIS

raw
PSINet, Inc. COGENT-149-40-16 (NET-149-40-0-0-1) 149.40.0.0 - 149.40.255.255 CDN77 DATACAMP-CGNT-NET-6 (NET-149-40-48-0-1) 149.40.48.0 - 149.40.63.255 Datacamp Limited CDNEXT-SEA (NET-149-40-62-0-1) 149.40.62.0 - 149.40.62.255
references
https://github.com/telekom-security/tpotce

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 18 days ago
Appeared in 9 threat reports