IOC Radar
IPMediumSignal 34/100

154.84.61.15

Location
United StatesUnited States
San Jose, California
ASN
AS400619
Fastmos Co Limited
First Seen
Jan 31, 2025
Last Seen
May 11, 2026
Jan 31
First Seen
498d ago
May 11
Last Seen
34d ago
16
Reports
source reports
34%
Confidence
medium
Found in 16 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
34%
Signal Score
34 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

23 techniques

Network Information

CountryUSUnited States
RegionSan Jose, California
ASNAS400619
OrganizationFastmos Co Limited

Feed Intelligence Summary

16 reports34% confidence
16
Source reports
34%
Confidence score
Category tags
abuseactive scanactive scanningaustraliaauthentication attacksbad reputationbotnetbotnet activitybrute forcebrute force attackbrute-forcecommand and controlcommunication protocolcowriecowrie honeypotcredential accesscredential stuffingctadata exfiltrationdata store exposuredecoy systemdistributed attackseuropeexploitation activityftp brute forceidentity & access exploitationindicatorinjection activityipv4malicious softwaremalwarenetworknetwork probingnetwork reconnaissancenetwork scanningnetwork securitynorth americaoceaniapassword attacksprocess injectionreconnaissanceresearchedscanscannerseychellessipsshssh attackssh monitoringt1021t1040t1046t1055t1059t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1486t1496t1499.002t1499.003t1565t1589t1595t1595.001t1595.002t1595.003telecommunicationsthreat intelligencetor nodeunauthorized access attemptsunited kingdomunited statesunited states of americausvoip

Activity Timeline

1 total obs
May 11May 11

Threat Activity Heatmap

· Peak: 2026-05-11
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
34
SIGNAL
Signal Score
34%
Confidence
16
Reports
First seenJan 31, 2025
Last seenMay 11, 2026
GeolocationUS
CountryUnited States
LocationSan Jose, California
ASNAS400619
OrgFastmos Co Limited
Coords37.7510, -97.8220

VirusTotal

Not checked

WHOIS

description
Banned by Fail2Ban [sshd]
raw
inetnum: 154.84.61.0 - 154.84.61.255 netname: Fastmos_Co_Limited descr: Fastmos Co Limited country: US admin-c: CIS1-AFRINIC tech-c: CIS1-AFRINIC status: ASSIGNED PA mnt-by: CIL1-MNT mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered parent: 154.80.0.0 - 154.95.255.255 person: Cloud Innovation Support address: Ebene address: MU address: Mahe address: Seychelles phone: tel:+248-4-610-795 nic-hdl: CIS1-AFRINIC abuse-mailbox: [email protected] mnt-by: CIL1-MNT source: AFRINIC # Filtered route: 154.84.56.0/21 descr: Fastmos Co Limited origin: AS18013 mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered route: 154.84.56.0/21 descr: Fastmos Co Limited origin: AS395886 mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered route: 154.84.56.0/21 descr: Fastmos Co Limited origin: AS400619 mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered route: 154.84.56.0/21 descr: Fastmos Co Limited origin: AS55020 mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered route: 154.84.56.0/21 descr: Fastmos Co Limited origin: AS8786 mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered
references
https://blog.edie.io/2020/04/30/diy-ip-threat-feed/, https://github.com/tankmek/threatfeed, https://redpiranha.net

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 1 month ago
Appeared in 16 threat reports