IOC Radar
IPMediumSignal 81/100

165.154.205.91

Location
SingaporeSingapore
Singapore, North West
ASN
AS142002
Scloud Pte Ltd
First Seen
Apr 17, 2026
Last Seen
Jun 4, 2026
Apr 17
First Seen
58d ago
Jun 4
Last Seen
10d ago
20
Reports
source reports
81%
Confidence
medium
Found in 20 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
81%
Signal Score
81 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

3 techniques

Network Information

CountrySGSingapore
RegionSingapore, North West
ASNAS142002
OrganizationScloud Pte Ltd

Feed Intelligence Summary

20 reports81% confidence
20
Source reports
81%
Confidence score
Category tags
abuseactive scanapacheapache attackeraptasiaattackaustraliabad reputationbad web botblocklistbotnet activitybrute forcebrute force attackerbrute-forcebruteforcecowriecredential stuffingcredential-harvestingddosddos attackdigital oceanenv-huntingexploitexploitation activityexploited hostftpftp brute-forcehackinghong kongidentity & access exploitationindicatorkill-chain exploitationkill-chain reconnaissancelow-riskmalaysianetworknginxoceaniaopencanaryosintportscanproject_gifted1ransomwareraspberry-piresearchedscannerscannersservice scansgsingaporesocradar honeypotsshssh attackssh-brutet1110t1110.001t1595.001threat actortor nodetpotvulnerability scanvulnerability-exploitationvultrweb app attackworker_strike

Activity Timeline

1 total obs
Jun 4Jun 4

Threat Activity Heatmap

· Peak: 2026-06-04
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
81
SIGNAL
Signal Score
81%
Confidence
20
Reports
First seenApr 17, 2026
Last seenJun 4, 2026
GeolocationSG
CountrySingapore
LocationSingapore, North West
ASNAS142002
OrgScloud Pte Ltd
Coords22.2578, 114.1657

VirusTotal

Not checked

WHOIS

description
Score: 60/100. Labels: abuseipdb:brute-force, abuseipdb:critical, abuseipdb:ddos, abuseipdb:hacking, abuseipdb:port-scan, abuseipdb:reported. Attacker IP 165.154.205.91 observed using SSH client fingerprint 'Unknown SSH Client (03a80b21afa8)' 30 times when connecting to db4lamedtech between 2026-04-17 07:58 and 2026-04-17 08:41 UTC.
raw
inetnum: 165.154.192.0 - 165.154.207.255 netname: SCLOUDPTELTD-SG descr: Scloud Pte Ltd t/a Scloud Pte Ltd country: SG org: ORG-SPL64-AP admin-c: SPLA52-AP tech-c: SPLA52-AP status: ALLOCATED PORTABLE abuse-c: AS3102-AP remarks: -------------------------------------------------------- remarks: To report network abuse, please contact mnt-irt remarks: For troubleshooting, please contact tech-c and admin-c remarks: Report invalid contact via www.apnic.net/invalidcontact remarks: -------------------------------------------------------- mnt-by: APNIC-HM mnt-lower: MAINT-SCLOUDPTELTD-SG mnt-routes: MAINT-SCLOUDPTELTD-SG mnt-irt: IRT-SCLOUDPTELTD-SG last-modified: 2023-03-15T03:40:18Z source: APNIC irt: IRT-SCLOUDPTELTD-SG address: BLK71 Ayer Rajah Crescent e-mail: [email protected] abuse-mailbox: [email protected] admin-c: SPLA52-AP tech-c: SPLA52-AP auth: # Filtered remarks: [email protected] is invalid mnt-by: MAINT-SCLOUDPTELTD-SG last-modified: 2026-01-21T13:08:33Z source: APNIC organisation: ORG-SPL64-AP org-name: Scloud Pte Ltd org-type: LIR country: SG address: 160 Robinson Rd, SBF Center, # 14-01 phone: +65 65920936 fax-no: +6562920937 e-mail: [email protected] mnt-ref: APNIC-HM mnt-by: APNIC-HM last-modified: 2023-09-05T02:18:26Z source: APNIC role: ABUSE SCLOUDPTELTDSG country: ZZ address: BLK71 Ayer Rajah Crescent phone: +000000000 e-mail: [email protected] admin-c: SPLA52-AP tech-c: SPLA52-AP nic-hdl: AS3102-AP remarks: Generated from irt object IRT-SCLOUDPTELTD-SG remarks: [email protected] is invalid abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2026-01-21T13:09:31Z source: APNIC role: Scloud Pte Ltd administrator address: 160 Robinson Rd, SBF Center, #14-01, Singapore Singapore 068914 country: SG phone: +65-65920936 e-mail: [email protected] admin-c: SPLA52-AP tech-c: SPLA52-AP nic-hdl: SPLA52-AP notify: [email protected] mnt-by: MAINT-SCLOUDPTELTD-SG last-modified: 2021-09-14T05:36:49Z source: APNIC route: 165.154.205.0/24 origin: AS142002 descr: Scloud Pte Ltd 160 Robinson Rd, SBF Center, #14-01 mnt-by: MAINT-SCLOUDPTELTD-SG last-modified: 2023-10-16T14:19:11Z country: SG source: APNIC
references
https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-04-17/, https://jamesbrine.com.au, https://jamesbrine.com.au/vultrmelbournetest-ssh-bruteforce-ip-list-2026-04-17/, https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 10 days ago
Appeared in 20 threat reports