IOC Radar
IPMediumSignal 67/100

160.119.76.23

Location
NetherlandsNetherlands
Amsterdam, North Holland
ASN
AS49870
HostUS Solutions LLC
First Seen
Mar 18, 2026
Last Seen
Jun 10, 2026
Mar 18
First Seen
99d ago
Jun 10
Last Seen
15d ago
12
Reports
source reports
67%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
67%
Signal Score
67 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

10 techniques

Network Information

CountryNLNetherlands
RegionAmsterdam, North Holland
ASNAS49870
OrganizationHostUS Solutions LLC

Feed Intelligence Summary

12 reports67% confidence
12
Source reports
67%
Confidence score
Category tags
abuseactive scanactive scanningattackbad reputationbad web botbotnetbotnet activitybrute forcebrute force attackbrute-forcecowriecredential accesscredential stuffingddosddos attackdenial of servicedionaeaeuropeexploitation activityexploited hostfatthackingidentity & access exploitationindicatormalicious activitymalwarenetherlandsnetworknlp0fpassword attacksphishingransomwarercereconnaissanceredisresearchedscannersensor-taggedseychellessocradar honeypotsshssh attackt1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1595.001t1595.002t1595.003tannertargeting databasetelnetthreat actortor nodetpotweb app attackweb application attackweb exploitation

Activity Timeline

1 total obs
Jun 10Jun 10

Threat Activity Heatmap

· Peak: 2026-06-10
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
67
SIGNAL
Signal Score
67%
Confidence
12
Reports
First seenMar 18, 2026
Last seenJun 10, 2026
GeolocationNL
CountryNetherlands
LocationAmsterdam, North Holland
ASNAS49870
OrgHostUS Solutions LLC
Coords52.3676, 4.9041

VirusTotal

Not checked

WHOIS

description
Observed on T-Pot within last 24h; sensors=conpot, honeytrap, p0f; threshold?1; private IPs excluded. geo=SC; ports=1027,1516,6535,10001,10123 Location=Sydney, Australia.

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 months ago · Last seen 15 days ago
Appeared in 12 threat reports