IOC Radar
IPMediumSignal 62/100

193.176.155.128

Location
Russian FederationRussian Federation
Moscow, Moscow
ASN
AS197175
Inna Grigorevna Khoruzhaya
First Seen
Apr 15, 2026
Last Seen
Apr 24, 2026
Apr 15
First Seen
61d ago
Apr 24
Last Seen
52d ago
8
Reports
source reports
62%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
62%
Signal Score
62 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

7 techniques

Network Information

CountryRURussian Federation
RegionMoscow, Moscow
ASNAS197175
OrganizationInna Grigorevna Khoruzhaya

Feed Intelligence Summary

8 reports62% confidence
8
Source reports
62%
Confidence score
Category tags
active scanactive scanningaptbrute forcebrute force attackcredential accesscredential stuffingeurope/asiaexploitation activityidentity & access exploitationimapimap attackindicatornetworkpassword attacksreconnaissanceresearchedrussiascannersmtpsmtp attackerssh attackt1110.001t1110.002t1110.003t1110.004t1595.001t1595.002t1595.003threat actortor node

Activity Timeline

1 total obs
Apr 24Apr 24

Threat Activity Heatmap

· Peak: 2026-04-24
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
62
SIGNAL
Signal Score
62%
Confidence
8
Reports
First seenApr 15, 2026
Last seenApr 24, 2026
GeolocationRU
CountryRussian Federation
LocationMoscow, Moscow
ASNAS197175
OrgInna Grigorevna Khoruzhaya
Coords55.7386, 37.6068

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
inetnum: 193.176.154.0 - 193.176.155.255 netname: VIT-A country: RU remarks: RANR-VALID-oAAAAABpALPedlJ04a8PZTQ5v5ywux67 admin-c: BVS50-RIPE tech-c: CVV41-RIPE abuse-c: AR29447-RIPE mnt-domains: VITA-MNT mnt-lower: VITA-MNT status: ASSIGNED PA mnt-by: mnt-ru-igkh-1 created: 2019-12-23T06:47:30Z last-modified: 2025-11-10T14:15:20Z source: RIPE person: Borisyuk Viktor Stepanovich address: reg. General Vasil'eva, home 1 address: Avtonomnaya Respublika Krym, Armyansk city, 96012 phone: +3 8 (06567) 3-42-13 nic-hdl: BVS50-RIPE created: 2011-01-27T10:42:50Z last-modified: 2019-07-08T14:23:41Z source: RIPE # Filtered mnt-by: VITA-MNT person: Chikalov Vladimir Valerevich address: st. Ivanisheva 9 address: Avtonomnaya Respublika Krym, Armyansk city, 96012 org: ORG-VITA2-RIPE phone: +3 8 (06567) 3-26-38 nic-hdl: CVV41-RIPE created: 2011-01-27T13:48:33Z last-modified: 2011-01-27T13:48:33Z source: RIPE # Filtered mnt-by: VITA-MNT route: 193.176.154.0/23 origin: AS197175 mnt-by: ru-iskh-1-mnt mnt-by: mnt-ru-igkh-1 created: 2020-03-10T11:54:11Z last-modified: 2021-09-16T05:37:37Z source: RIPE
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 1 month ago
Appeared in 8 threat reports