IOC Radar
IPMediumSignal 0/100

185.220.205.106

Location
United StatesUnited States
Amsterdam, North Holland
ASN
AS41436
Cloudwebmanage EU
First Seen
Jun 2, 2022
Last Seen
Aug 5, 2025
Jun 2
First Seen
1486d ago
Aug 5
Last Seen
326d ago
1
Reports
source reports
0%
Confidence
medium
Found in 1 report. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

24 techniques

Network Information

CountryUSUnited States
RegionAmsterdam, North Holland
ASNAS41436
OrganizationCloudwebmanage EU

Feed Intelligence Summary

1 report0% confidence
1
Source reports
0%
Confidence score
Category tags
active scanningbrute forcebrute force attackcommunication protocolcompromised credentials attemptcredential accesscredential stuffingdatabase attacksdecoy systemdenial of servicedictionary attackftpftp brute forcehttp brute forcehttp scannerindicatorlateral movementnetworknetwork attacksnetwork enumerationnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynorth americapassword attackspossible reconnaissanceprotocol exploitationreconnaissanceremote accessremote servicesresearchedservice enumerationsmb scanningssh attackt1016t1021t1021.001t1040t1046t1053t1059t1068t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1499.002t1499.003t1563t1595t1595.001t1595.002t1595.003tcp scanningtelnet threatthreat intelligencetsecunauthorized accessunited statesweb traffic

Activity Timeline

Threat Activity Heatmap

Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
1
Reports
First seenJun 2, 2022
Last seenAug 5, 2025
GeolocationUS
CountryUnited States
LocationAmsterdam, North Holland
ASNAS41436
OrgCloudwebmanage EU
Coords52.3675, 4.9041

VirusTotal

Not checked

WHOIS

description
HoneyNet Event: 185.220.205.106 connected: 3 times over ports: 9200 Tags: P0f,9200

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 10 months ago
Appeared in 1 threat report