IOC Radar
IPHighVerifiedSignal 46/100

164.68.97.3

Location
FranceFrance
Lauterbourg, BY
ASN
AS51167
Contabo GmbH
First Seen
Jun 4, 2026
Last Seen
Jun 8, 2026
Jun 4
First Seen
21d ago
Jun 8
Last Seen
18d ago
4
Reports
source reports
46%
Confidence
high
Found in 4 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
46%
Signal Score
46 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryFRFrance
RegionLauterbourg, BY
ASNAS51167
OrganizationContabo GmbH

Feed Intelligence Summary

4 reports46% confidence
4
Source reports
46%
Confidence score
Category tags
brute forcebrute-forcedeeuropefrfrancegermanyindicatornetworkredisresearchedtargeting databasevultr

Activity Timeline

1 total obs
Jun 8Jun 8

Threat Activity Heatmap

· Peak: 2026-06-08
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
46
SIGNAL
Signal Score
46%
Confidence
4
Reports
First seenJun 4, 2026
Last seenJun 8, 2026
Verified IOC
GeolocationFR
CountryFrance
LocationLauterbourg, BY
ASNAS51167
OrgContabo GmbH
Coords49.4050, 11.1617

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected attempting to brute force REDIS on Vultr Paris (France) honeypot
raw
inetnum: 164.68.96.0 - 164.68.111.255 netname: CONTABO descr: Contabo GmbH country: DE org: ORG-GG22-RIPE admin-c: MH7476-RIPE tech-c: MH7476-RIPE status: ASSIGNED PA mnt-by: MNT-CONTABO created: 2019-06-17T15:24:44Z last-modified: 2019-06-17T15:24:44Z source: RIPE organisation: ORG-GG22-RIPE org-name: Contabo GmbH country: DE reg-nr: District court M�nchen HRB 180722 org-type: LIR remarks: * Please direct all complaints about Internet abuse like Spam, hacking or scans * remarks: * to [email protected] . This will guarantee fastest processing possible. * address: Welfenstra�e 22 address: 81541 address: M�nchen address: GERMANY phone: +498921268372 fax-no: +498921665862 abuse-c: MH12453-RIPE mnt-ref: RIPE-NCC-HM-MNT mnt-ref: MNT-CONTABO mnt-ref: MNT-OCIRIS mnt-by: RIPE-NCC-HM-MNT mnt-by: MNT-CONTABO created: 2009-12-09T13:41:08Z last-modified: 2026-05-13T07:33:01Z source: RIPE # Filtered person: Johannes Selg address: Contabo GmbH address: Welfenstr. 22 address: 81541 M�nchen phone: +49 89 21268372 fax-no: +49 89 21665862 nic-hdl: MH7476-RIPE mnt-by: MNT-CONTABO mnt-by: MNT-GIGA-HOSTING created: 2010-01-04T10:41:37Z last-modified: 2025-12-05T12:12:21Z source: RIPE route: 164.68.96.0/23 descr: CONTABO origin: AS51167 mnt-by: MNT-CONTABO created: 2019-06-17T14:58:47Z last-modified: 2019-06-17T14:58:47Z source: RIPE
references
https://jamesbrine.com.au/vultrparis-redis-bruteforce-ip-list-2026-06-03/, https://jamesbrine.com.au

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 21 days ago · Last seen 18 days ago
Appeared in 4 threat reports