IOC Radar
IPMediumSignal 100/100

165.140.167.121

Location
United StatesUnited States
Los Angeles, California
ASN
AS36352
ReadyDedis, LLC
First Seen
Dec 18, 2024
Last Seen
Feb 11, 2026
Dec 18
First Seen
550d ago
Feb 11
Last Seen
130d ago
17
Reports
source reports
99%
Confidence
medium
Found in 17 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

35 techniques

Network Information

CountryUSUnited States
RegionLos Angeles, California
ASNAS36352
OrganizationReadyDedis, LLC

IP Category

Hosting
Hosting provider

Feed Intelligence Summary

17 reports99% confidence
17
Source reports
99%
Confidence score
Category tags
abuseaccess controlaccount discoveryaccount profilingaccount takeoveractive scanningatif feedattackaustraliaauthenticationauthentication attackauto-generated securityautomated attackbanlist feedbinary defensebotnetbrute forcebrute force attackbrute force attemptbrute-forccisco devicecommand and controlcowrie honeypotcredential accesscredential harvestingcredential stuffingctadata exfiltrationdecoy systemdevice managementdistributed attacksenterprise networkingindicatorinfoinfrastructure acquisitionreconnaissancemalicious activitymalicious softwaremalwaremanualnetworknetwork infrastructurenetwork intrusionnetwork scanningnetwork securitynorth americanoticeoceaniapassword attackpassword attacksphishing attackprocess injectionreconnaissanceremote accessremote servicesresearchedscannersecurity operationssecurity policysftp attacksocial engineeringssh attackssh monitoringt1021.004t1041t1055t1071.001t1078t1078.002t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.001t1499.002t1499.003t1555t1555.003t1565t1566.001t1566.002t1566.003t1567t1587.001t1588t1588.002t1588.004t1589t1589.002t1590.001t1595t1595.001t1595.002t1595.003telecommunicationsthreat actorthreat intelligencethreat preventionunited statesunited states of americaus

Activity Timeline

1 total obs
Feb 11Feb 11

Threat Activity Heatmap

· Peak: 2026-02-11
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
17
Reports
First seenDec 18, 2024
Last seenFeb 11, 2026
GeolocationUS
CountryUnited States
LocationLos Angeles, California
ASNAS36352
OrgReadyDedis, LLC
Coords34.0544, -118.2440
Hosting

VirusTotal

Not checked

WHOIS

description
Host bruteforcing SSH
raw
NetRange: 165.140.164.0 - 165.140.167.255 CIDR: 165.140.164.0/22 NetName: READYDEDIS-US-01 NetHandle: NET-165-140-164-0-1 Parent: NET165 (NET-165-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: ReadyDedis, LLC (RL-812) RegDate: 2021-10-05 Updated: 2023-06-12 Ref: https://rdap.arin.net/registry/ip/165.140.164.0 OrgName: ReadyDedis, LLC OrgId: RL-812 Address: 2035 Sunset Lake Road, Suite B-2 City: Newark StateProv: DE PostalCode: 19702 Country: US RegDate: 2019-08-19 Updated: 2024-11-25 Ref: https://rdap.arin.net/registry/entity/RL-812 OrgDNSHandle: BALAB11-ARIN OrgDNSName: Bala, Bharat OrgDNSPhone: +1-302-597-7085 OrgDNSEmail: [email protected] OrgDNSRef: https://rdap.arin.net/registry/entity/BALAB11-ARIN OrgTechHandle: BALAB11-ARIN OrgTechName: Bala, Bharat OrgTechPhone: +1-302-597-7085 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/BALAB11-ARIN OrgNOCHandle: BALAB11-ARIN OrgNOCName: Bala, Bharat OrgNOCPhone: +1-302-597-7085 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/BALAB11-ARIN OrgRoutingHandle: BALAB11-ARIN OrgRoutingName: Bala, Bharat OrgRoutingPhone: +1-302-597-7085 OrgRoutingEmail: [email protected] OrgRoutingRef: https://rdap.arin.net/registry/entity/BALAB11-ARIN OrgAbuseHandle: BALAB11-ARIN OrgAbuseName: Bala, Bharat OrgAbusePhone: +1-302-597-7085 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/BALAB11-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 4 months ago
Appeared in 17 threat reports