IOC Radar
IPMediumSignal 52/100

178.20.208.91

Location
RussiaRussia
Moscow, Moscow
ASN
AS216246
NetCrafters OU
First Seen
Nov 21, 2024
Last Seen
Apr 1, 2025
Nov 21
First Seen
581d ago
Apr 1
Last Seen
450d ago
8
Reports
source reports
52%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
52%
Signal Score
52 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

21 techniques

Network Information

CountryRURussia
RegionMoscow, Moscow
ASNAS216246
OrganizationNetCrafters OU

Feed Intelligence Summary

8 reports52% confidence
8
Source reports
52%
Confidence score
Category tags
abuseactive scanningbotnetbrute forcecommand and controlcommunication protocolcredential accesscredential stuffingdata exfiltrationdenial of servicedistributed attacksftp brute forcehttp brute forcelogin attemptmalicious softwaremalwarenetworknetwork attacksnetwork protocolnetwork reconnaissancenetwork scanningprocess injectionproxyreconnaissanceremote accessremote servicesresearchedscannersmtp brute forcessh attackt1021t1021.001t1040t1055t1059t1071.001t1076t1083t1110t1110.002t1486t1496t1499.002t1499.003t1563t1565t1589t1595t1595.001t1595.002t1595.003tcp protocol

Activity Timeline

1 total obs
Apr 1Apr 1

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
52
SIGNAL
Signal Score
52%
Confidence
8
Reports
First seenNov 21, 2024
Last seenApr 1, 2025
GeolocationRU
CountryRussia
LocationMoscow, Moscow
ASNAS216246
OrgNetCrafters OU
Coords55.7487, 37.6187

VirusTotal

Not checked

WHOIS

description
CC=RU ASN=AS216246 Aeza Group Ltd.

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 1 year ago
Appeared in 8 threat reports