IOC Radar
IPHighVerifiedSignal 73/100

156.239.235.213

Location
Hong KongHong Kong
Hong Kong, Kowloon
ASN
AS154321
Binary Networks Solutions LLC
First Seen
Apr 17, 2026
Last Seen
Apr 30, 2026
Apr 17
First Seen
63d ago
Apr 30
Last Seen
50d ago
5
Reports
source reports
73%
Confidence
high
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
73%
Signal Score
73 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryHKHong Kong
RegionHong Kong, Kowloon
ASNAS154321
OrganizationBinary Networks Solutions LLC

Feed Intelligence Summary

5 reports73% confidence
5
Source reports
73%
Confidence score
Category tags
active scanasiabrute forcebrute force attackerbrute-forceexploitation activityhackinghkhong kongindicatornetworknorth americaportscanresearchedscannerscannersservice scanseychellessshunited statesvultrweb app attack

Activity Timeline

1 total obs
Apr 30Apr 30

Threat Activity Heatmap

· Peak: 2026-04-30
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
73
SIGNAL
Signal Score
73%
Confidence
5
Reports
First seenApr 17, 2026
Last seenApr 30, 2026
Verified IOC
GeolocationHK
CountryHong Kong
LocationHong Kong, Kowloon
ASNAS154321
OrgBinary Networks Solutions LLC
Coords37.7510, -97.8220

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected port scanning Vultr Melbourne (Australia) honeypot
raw
inetnum: 156.239.235.0 - 156.239.235.255 netname: BINARY_NETWORKS_SOLUTIONS_LLC descr: BINARY NETWORKS SOLUTIONS LLC country: HK admin-c: CIS1-AFRINIC tech-c: CIS1-AFRINIC status: ASSIGNED PA mnt-by: CIL1-MNT mnt-by: LARUS-SERVICE-MNT source: AFRINIC # Filtered parent: 156.224.0.0 - 156.255.255.255 person: Cloud Innovation Support address: Ebene address: MU address: Mahe address: Seychelles phone: tel:+248-4-610-795 nic-hdl: CIS1-AFRINIC abuse-mailbox: [email protected] mnt-by: CIL1-MNT source: AFRINIC # Filtered
references
https://jamesbrine.com.au/vultrtokyo-portscan-bruteforce-ip-list-2026-04-19/, https://jamesbrine.com.au, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-04-19/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-04-19/, https://jamesbrine.com.au/vultrtokyo-portscan-bruteforce-ip-list-2026-04-17/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-04-17/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-04-17/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-04-16/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-04-16/

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 2 months ago · Last seen 1 month ago
Appeared in 5 threat reports