IOC Radar
IPMediumSignal 63/100

185.180.143.43

Location
United StatesUnited States
Chicago, Illinois
ASN
AS211680
ICG 1 Inap ORD
First Seen
Apr 28, 2022
Last Seen
Aug 5, 2025
Apr 28
First Seen
1518d ago
Aug 5
Last Seen
322d ago
8
Reports
source reports
63%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
63%
Signal Score
63 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

20 techniques

Network Information

CountryUSUnited States
RegionChicago, Illinois
ASNAS211680
OrganizationICG 1 Inap ORD

Feed Intelligence Summary

8 reports63% confidence
8
Source reports
63%
Confidence score
Category tags
abuseactive scanningbrute forcebrute force attackcommunication protocolcredential accesscredential stuffingdatabase attacksdecoy systemexternal network scanfin scanftphttp scannerindicatornetworknetwork enumerationnetwork reconnaissancenetwork scanningnorth americanull scanopen port enumerationpassword attackspossible reconnaissancepotential vulnerability exploitationreconnaissanceresearchedsansscannerservice discoveryssh attacksyn scant1016t1021t1046t1059t1068t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1499.002t1589t1592t1595t1595.001t1595.002t1595.003threat intelligencetsecudp port scanunauthorized accessunited statesweb trafficxmas scan

Activity Timeline

1 total obs
Aug 5Aug 5

Threat Activity Heatmap

· Peak: 2025-08-05
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
63
SIGNAL
Signal Score
63%
Confidence
8
Reports
First seenApr 28, 2022
Last seenAug 5, 2025
GeolocationUS
CountryUnited States
LocationChicago, Illinois
ASNAS211680
OrgICG 1 Inap ORD
Coords41.8781, -87.6298

VirusTotal

Not checked

WHOIS

description
Port Scan 2023-11-30T22:49:14.788Z -> 185.180.143.43 scanned port 4042 on one of our servers

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 10 months ago
Appeared in 8 threat reports