IOC Radar
IPMediumSignal 65/100

180.76.141.109

Location
ChinaChina
Beijing, Beijing
ASN
AS38365
Beijing Baidu Netcom Science and Technology Co., Ltd.
First Seen
Apr 8, 2026
Last Seen
Jun 3, 2026
Apr 8
First Seen
63d ago
Jun 3
Last Seen
8d ago
12
Reports
source reports
65%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
65%
Signal Score
65 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

8 techniques

Network Information

CountryCNChina
RegionBeijing, Beijing
ASNAS38365
OrganizationBeijing Baidu Netcom Science and Technology Co., Ltd.

Feed Intelligence Summary

12 reports65% confidence
12
Source reports
65%
Confidence score
Category tags
abuseactive scanactive scanningaptasiaaustraliabad reputationbrute forcebrute force attackbrute-forcebruteforcechinacncredential accesscredential stuffingddosddos attackexploitexploitation activityexploited hostftp brute-forcehackingidentity & access exploitationindicatornetworkoceaniapassword attacksreconnaissanceresearchedscannersshssh attackt1110t1110.001t1110.002t1110.003t1110.004t1595.001t1595.002t1595.003threat actortor nodetpotvulnerability scanvulnerability-exploitation

Activity Timeline

1 total obs
Jun 3Jun 3

Threat Activity Heatmap

· Peak: 2026-06-03
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
65
SIGNAL
Signal Score
65%
Confidence
12
Reports
First seenApr 8, 2026
Last seenJun 3, 2026
GeolocationCN
CountryChina
LocationBeijing, Beijing
ASNAS38365
OrgBeijing Baidu Netcom Science and Technology Co., Ltd.
Coords34.7732, 113.7220

VirusTotal

Not checked

WHOIS

description
Host bruteforcing SSH
raw
inetnum: 180.76.0.0 - 180.76.255.255 netname: Baidu descr: Beijing Baidu Netcom Science and Technology Co., Ltd. descr: Baidu Plaza, No.10, Shangdi 10th street, descr: Haidian District Beijing,100080 country: CN admin-c: BN261-AP tech-c: BN261-AP abuse-c: AC1601-AP status: ALLOCATED PORTABLE mnt-by: MAINT-CNNIC-AP mnt-irt: IRT-BAIDU-CN mnt-lower: MAINT-CNNIC-AP mnt-routes: MAINT-CNNIC-AP last-modified: 2024-03-11T23:29:37Z source: APNIC irt: IRT-BAIDU-CN address: 12f,lixiang building ,zhongguancun,beijing e-mail: [email protected] abuse-mailbox: [email protected] admin-c: ZKY3-AP tech-c: ZKY3-AP auth: # Filtered mnt-by: MAINT-CNNIC-AP last-modified: 2025-11-18T00:35:07Z source: APNIC role: ABUSE CNNICCN country: ZZ address: Beijing, China phone: +000000000 e-mail: [email protected] admin-c: IP50-AP tech-c: IP50-AP nic-hdl: AC1601-AP remarks: Generated from irt object IRT-CNNIC-CN remarks: [email protected] is invalid abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-09-19T17:20:32Z source: APNIC person: Baidu Noc address: Baidu Campus,NO.10 Shangdi 10th Street,Haidian District,Beijing The People's Republic of China 100085 country: CN phone: +86-18110062082 e-mail: [email protected] nic-hdl: BN261-AP mnt-by: MAINT-CNNIC-AP last-modified: 2024-03-11T23:28:23Z source: APNIC route: 180.76.141.0/24 descr: Baidu country: CN origin: AS38365 notify: [email protected] mnt-by: MAINT-CNNIC-AP last-modified: 2015-07-23T09:22:03Z source: APNIC route: 180.76.141.0/24 descr: Baidu country: CN origin: AS55967 notify: [email protected] mnt-by: MAINT-CNNIC-AP last-modified: 2017-03-13T07:36:02Z source: APNIC
references
https://redpiranha.net

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 8 days ago
Appeared in 12 threat reports