IOC Radar
IPMediumSignal 75/100

160.119.76.108

Location
NetherlandsNetherlands
Amsterdam, North Holland
ASN
AS49870
HostUS Solutions LLC
First Seen
Mar 23, 2026
Last Seen
Jun 10, 2026
Mar 23
First Seen
79d ago
Jun 10
Last Seen
today
10
Reports
source reports
75%
Confidence
medium
Found in 10 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
75%
Signal Score
75 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

1 techniques

Network Information

CountryNLNetherlands
RegionAmsterdam, North Holland
ASNAS49870
OrganizationHostUS Solutions LLC

Feed Intelligence Summary

10 reports75% confidence
10
Source reports
75%
Confidence score
Category tags
abuseactive scanafricaasiabad reputationbad web botbotnetbotnet activitybrute forcebrute force attackerbrute-forcebulgariacloudcogentcowriectrlsddosddos attackdigital oceandionaeaeuropeexploitation activityexploited hostfatthackinghydrainbound scanindiaindicatormalicious ipmirainetherlandsnetworknlp0fpanamaphishingping of deathportscanransomwareresearchedscanscannerscannerssensor-taggedserviceservice scanseychellessipsouth africaspamssht1595tamatiya eoodtannertcptpotunitedunited kingdomvultrweb app attackweb spam

Activity Timeline

1 total obs
Jun 10Jun 10

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
1
Minimal
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
75
SIGNAL
Signal Score
75%
Confidence
10
Reports
First seenMar 23, 2026
Last seenJun 10, 2026
GeolocationNL
CountryNetherlands
LocationAmsterdam, North Holland
ASNAS49870
OrgHostUS Solutions LLC
Coords-29.0000, 24.0000

VirusTotal

Not checked

WHOIS

description
Observed on T-Pot within last 24h; sensors=p0f; threshold?1; private IPs excluded. geo=SC; ports=443 Location=Sydney, Australia.
raw
inetnum: 160.119.64.0 - 160.119.79.255 netname: HostUS-Solutions-v4 descr: HostUS Solutions LLC country: SC org: ORG-HSL1-AFRINIC admin-c: HIA2-AFRINIC admin-c: AC54-AFRINIC admin-c: JS74-AFRINIC tech-c: HIA2-AFRINIC tech-c: AC54-AFRINIC tech-c: JS74-AFRINIC status: ALLOCATED PA mnt-by: AFRINIC-HM-MNT mnt-lower: HSL1-MNT source: AFRINIC # Filtered parent: 0.0.0.0 - 255.255.255.255 organisation: ORG-HSL1-AFRINIC org-name: HostUS Solutions LLC org-type: LIR country: SC address: Pearl Street, Providence Industrial Estate address: Mahe phone: tel:+1-302-300-1737 phone: tel:+44-7454-655229 admin-c: HIA2-AFRINIC admin-c: AC54-AFRINIC admin-c: JS74-AFRINIC tech-c: HIA2-AFRINIC tech-c: AC54-AFRINIC tech-c: JS74-AFRINIC mnt-ref: AFRINIC-HM-MNT mnt-ref: HSL1-MNT mnt-by: AFRINIC-HM-MNT source: AFRINIC # Filtered person: Andrew Clarke address: Coriander Avenue address: London E14 2AA address: United Kingdom phone: tel:+1-302-300-1737 nic-hdl: AC54-AFRINIC mnt-by: HSL1-MNT source: AFRINIC # Filtered person: HostUS IP Administrator address: Coriander Avenue address: London E14 2AA address: United Kingdom phone: tel:+1-302-300-1737 nic-hdl: HIA2-AFRINIC abuse-mailbox: [email protected] mnt-by: HSL1-MNT source: AFRINIC # Filtered person: Jack Sephton address: Pearl Street, Providence Industrial Estate address: Mahe address: Seychelles phone: tel:+44-7454-655229 nic-hdl: JS74-AFRINIC source: AFRINIC # Filtered mnt-by: GENERATED-RQKBWUGNJNGPDXDJQOJTCKV9ZX2M9UJY-MNT route: 160.119.64.0/20 descr: HostUS origin: AS7489 mnt-by: HSL1-MNT source: AFRINIC # Filtered
references
https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-29/, https://jamesbrine.com.au, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-28/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-27/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-25/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-24/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-23/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-22/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-21/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-20/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-19/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-18/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-05-18/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-16/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-15/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-14/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-05-14/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-13/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-12/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-05-12/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-10/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-05-10/, https://jamesbrine.com.au/digitaloceantoronto-portscan-bruteforce-ip-list-2026-05-09/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-09/, https://jamesbrine.com.au/digitaloceantoronto-portscan-bruteforce-ip-list-2026-05-08/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-08/, https://jamesbrine.com.au/digitaloceantoronto-portscan-bruteforce-ip-list-2026-05-07/, https://jamesbrine.com.au/vultrtokyo-portscan-bruteforce-ip-list-2026-05-07/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-05-07/

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen today
Appeared in 10 threat reports