IPMediumSignal 77/100
157.65.242.25
Location
Kita, 13
ASN
AS2514
InfoSphere
First Seen
Jul 3, 2025
Last Seen
Mar 15, 2026
Jul 3
First Seen
353d ago
Mar 15
Last Seen
98d ago
9
Reports
source reports
77%
Confidence
medium
1/91
VirusTotal
detections
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
77%
Signal Score
77 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Japan
RegionKita, 13
ASNAS2514
OrganizationInfoSphere
Feed Intelligence Summary
9 reports77% confidence
9
Source reports
77%
Confidence score
Category tags
abuseactive scanningasiabotnetbrute forcebrute force attackcommand and controlcredential accesscredential stuffingdata exfiltrationdistributed attacksindicatorinitial accessjapanmalicious softwaremalwarenetworknetwork intrusionnetwork reconnaissancenetwork scanningnetwork securitynorth americapassword attacksprocess injectionprotocol exploitationreconnaissanceremote accessresearchedscannert1021t1021.004t1040t1046t1055t1059t1059.001t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.002t1499.003t1565t1595t1595.001t1595.002t1595.003tcp/23telnet threatunited states
Activity Timeline
Mar 15Mar 15
Threat Activity Heatmap
· Peak: 2026-03-15LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
77
SIGNAL
Signal Score
77%
Confidence
9
Reports
First seenJul 3, 2025
Last seenMar 15, 2026
GeolocationJP
CountryJapan
LocationKita, 13
ASNAS2514
OrgInfoSphere
Coords35.7516, 139.7044
WHOIS
- description
- Logged 1 visit on 1 honeypot. Duration: 22.4s, supplied credentials, did not successfully log in
- raw
- inetnum: 157.65.224.0 - 157.65.255.255 netname: InfoSphere descr: NTT PC Communications,Inc. descr: 2-14-11, NishiShinbashi,Minato-ku, Tokyo 105-0003, Japan country: JP admin-c: JNIC1-AP tech-c: JNIC1-AP status: ALLOCATED PORTABLE remarks: Email address for spam or abuse complaints : [email protected] mnt-by: MAINT-JPNIC mnt-irt: IRT-JPNIC-JP mnt-lower: MAINT-JPNIC last-modified: 2021-06-13T07:00:02Z source: APNIC irt: IRT-JPNIC-JP address: Uchikanda OS Bldg 4F, 2-12-6 Uchi-Kanda address: Chiyoda-ku, Tokyo 101-0047, japan e-mail: [email protected] abuse-mailbox: [email protected] phone: +81-3-5297-2311 fax-no: +81-3-5297-2312 admin-c: JNIC1-AP tech-c: JNIC1-AP auth: # Filtered remarks: [email protected] was validated on 2024-11-27 mnt-by: MAINT-JPNIC last-modified: 2025-04-10T11:04:13Z source: APNIC role: Japan Network Information Center address: Uchikanda OS Bldg 4F, 2-12-6 Uchi-Kanda address: Chiyoda-ku, Tokyo 101-0047, Japan country: JP phone: +81-3-5297-2311 fax-no: +81-3-5297-2312 e-mail: [email protected] admin-c: JI13-AP tech-c: JE53-AP nic-hdl: JNIC1-AP mnt-by: MAINT-JPNIC last-modified: 2022-01-05T03:04:02Z source: APNIC inetnum: 157.65.242.0 - 157.65.242.255 netname: INFOSPHERE descr: InfoSphere (NTTPC Communications, Inc.) country: JP admin-c: JP00027819 tech-c: JP00027819 tech-c: JP00050961 last-modified: 2016-04-07T00:35:04Z remarks: This information has been partially mirrored by APNIC from remarks: JPNIC. To obtain more specific information, please use the remarks: JPNIC WHOIS Gateway at remarks: http://www.nic.ad.jp/en/db/whois/en-gateway.html or remarks: whois.nic.ad.jp for WHOIS client. (The WHOIS client remarks: defaults to Japanese output, use the /e switch for English remarks: output) source: JPNIC
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 11 months ago · Last seen 3 months ago
Appeared in 9 threat reports