IPLowSignal 55/100
183.136.225.35
Location
Hangzhou, Zhejiang
ASN
AS58461
Leon Ship Network Limited
First Seen
Jun 2, 2022
Last Seen
Feb 9, 2026
Found in 2 reports. Confidence: low. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
55%
Signal Score
55 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
China
RegionHangzhou, Zhejiang
ASNAS58461
OrganizationLeon Ship Network Limited
Feed Intelligence Summary
2 reports55% confidence
2
Source reports
55%
Confidence score
Category tags
active scanningasiaauthentication failurebrute forcebrute force attackchinacommunication protocolcompromised credentials attemptcredential accesscredential stuffingdatabase attacksdecoy systemdenial of servicedictionary attackexploit probingexploitation attemptsftpftp brute forcehttp brute forcehttp scannerhttpsindicatorlateral movementlogin attemptlogin attemptsmalicious trafficnetworknetwork attacksnetwork enumerationnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynorth americapassword attackspossible reconnaissancepotential compromiseprotocol exploitationreconnaissanceremote accessremote servicesresearchedscannerscanning activityservice enumerationsmb scanningssh attackt1016t1021t1021.001t1040t1046t1053t1059t1059.004t1068t1071.001t1076t1078t1078.002t1078.003t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1133t1189t1190t1210t1499.002t1499.003t1563t1583t1589t1595t1595.001t1595.002t1595.003tcp protocoltcp scantcp scanningtelnet threatthreat intelligencetsecudp scanunauthorized accessunauthorized activityunited statesweb traffic
Activity Timeline
Feb 9Feb 9
Threat Activity Heatmap
· Peak: 2026-02-09LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
55
SIGNAL
Signal Score
55%
Confidence
2
Reports
First seenJun 2, 2022
Last seenFeb 9, 2026
GeolocationCN
CountryChina
LocationHangzhou, Zhejiang
ASNAS58461
OrgLeon Ship Network Limited
Coords30.0464, 119.9540
VirusTotal
Not checked
WHOIS
- description
- HoneyNet Event: 183.136.225.35 connected: 9 times over ports: 443 Tags: P0f,443
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
lowFirst detected 4 years ago · Last seen 4 months ago
Appeared in 2 threat reports