IOC Radar
IPMediumSignal 64/100

182.10.129.172

Location
IndonesiaIndonesia
Bandung, BE
ASN
AS23693
PT Telekomunikasi Selular Indonesia
First Seen
Nov 9, 2025
Last Seen
Apr 23, 2026
Nov 9
First Seen
217d ago
Apr 23
Last Seen
52d ago
5
Reports
source reports
64%
Confidence
medium
Found in 5 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
64%
Signal Score
64 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

10 techniques

Network Information

CountryIDIndonesia
RegionBandung, BE
ASNAS23693
OrganizationPT Telekomunikasi Selular Indonesia

Feed Intelligence Summary

5 reports64% confidence
5
Source reports
64%
Confidence score
Category tags
active scanactive scanningasiabad web botbotnet activitybrute forcebrute force attackbrute force attackerbrute-forcebruteforcecredential accesscredential stuffingddosddos attackdenial of serviceexploitation activityexploited hosthackingidentity & access exploitationindicatorindonesiamssqlnetworkpassword attacksportscanreconnaissanceresearchedscannerscannersservice scant1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1595.001t1595.002t1595.003vultrweb application attackweb exploitation

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
64
SIGNAL
Signal Score
64%
Confidence
5
Reports
First seenNov 9, 2025
Last seenApr 23, 2026
GeolocationID
CountryIndonesia
LocationBandung, BE
ASNAS23693
OrgPT Telekomunikasi Selular Indonesia
Coords-3.8125, 102.2875

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected attempting to brute force MSSQL on Vultr Paris (France) honeypot
raw
inetnum: 182.0.0.0 - 182.15.255.255 netname: TELKOMSEL-ID descr: PT. Telekomunikasi Selular (Telkomsel) Indonesia descr: Cellular Network Provider descr: Jakarta Pusat country: ID admin-c: HT318-AP tech-c: HT318-AP remarks: Send Spam & Abuse Reports to : [email protected] status: ALLOCATED PORTABLE mnt-by: MNT-APJII-ID mnt-irt: IRT-IDNIC-ID mnt-lower: MAINT-ID-TELKOMSEL mnt-routes: MAINT-ID-TELKOMSEL last-modified: 2015-12-01T22:25:46Z source: APNIC irt: IRT-IDNIC-ID address: INDONESIA NETWORK INFORMATION CENTER address: Cyber Building 11th Floor address: Jl. Kuningan Barat No.8 address: Jakarta Selatan 12710 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: IA55-AP tech-c: IH123-AP auth: # Filtered mnt-by: MNT-APJII-ID last-modified: 2026-03-09T15:38:37Z source: APNIC person: Hostmaster Telkomsel nic-hdl: HT318-AP e-mail: [email protected] address: PT. Telkomsel address: Wisma Mulia, lt.8 address: Jl. Gatot Subroto 42 address: Jakarta phone: +62-21-5240811 fax-no: +62-21-5272977 country: ID mnt-by: MAINT-ID-TELKOMSEL last-modified: 2009-01-09T10:36:01Z source: APNIC route: 182.10.0.0/16 descr: Route Object of PT Telekomunikasi Selular Indonesia descr: ISP descr: Jakarta origin: AS23693 mnt-by: MAINT-ID-TELKOMSEL last-modified: 2010-09-24T08:24:01Z source: APNIC inetnum: 182.0.0.0 - 182.15.255.255 netname: TELKOMSEL-ID descr: PT. Telekomunikasi Selular (Telkomsel) Indonesia descr: Cellular Network Provider descr: Jakarta Pusat country: ID admin-c: HT318-AP tech-c: HT318-AP remarks: Send Spam & Abuse Reports to : [email protected] status: ALLOCATED PORTABLE mnt-by: MNT-APJII-ID mnt-irt: IRT-IDNIC-ID mnt-lower: MAINT-ID-TELKOMSEL mnt-routes: MAINT-ID-TELKOMSEL last-modified: 2015-12-01T22:25:46Z source: IDNIC irt: IRT-IDNIC-ID address: Kuningan Barat Gedung Cyber address: Cyber Building address: Jl. Kuningan Barat No.8 address: Jakarta Selatan 12710 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: IA55-AP tech-c: IH123-AP auth: # Filtered mnt-by: MNT-APJII-ID last-modified: 2024-12-29T14:21:38Z source: IDNIC person: Hostmaster Telkomsel nic-hdl: HT318-AP e-mail: [email protected] address: PT. Telkomsel address: Wisma Mulia, lt.8 address: Jl. Gatot Subroto 42 address: Jakarta phone: +62-21-5240811 fax-no: +62-21-5272977 country: ID mnt-by: MAINT-ID-TELKOMSEL last-modified: 2009-01-09T10:36:01Z source: IDNIC route: 182.10.0.0/16 descr: Route Object of PT Telekomunikasi Selular Indonesia descr: ISP descr: Jakarta origin: AS23693 mnt-by: MAINT-ID-TELKOMSEL last-modified: 2010-09-24T08:24:01Z source: IDNIC
references
https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-04-16/, https://jamesbrine.com.au, https://jamesbrine.com.au/vultrparis-mssql-bruteforce-ip-list-2026-04-16/

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 7 months ago · Last seen 1 month ago
Appeared in 5 threat reports