IPMediumSignal 66/100
195.177.94.73
Location
Marseille, Île-de-France
ASN
AS214961
Pitline Ltd
First Seen
Jun 28, 2025
Last Seen
May 22, 2026
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
66%
Signal Score
66 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
France
RegionMarseille, Île-de-France
ASNAS214961
OrganizationPitline Ltd
Feed Intelligence Summary
11 reports66% confidence
11
Source reports
66%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningadbhoney honeypotasyncratattackaustraliabad reputationbad web botbotnetbotnet activitybrute forcebrute force attackbrute force attacksc2censyscisco devicecobaltstrikecommand & controlcommand and controlcommunication protocolcompromised credentialscowrie honeypotcredential accesscredential harvestingcredential stuffingdata exfiltrationdata store exposuredatabase attackdatabase probingdatabase securityddosdecoy systemdeimosdenial of servicedevice managementdionaea honeypotdistributed attacksdistributed_attackelasticpot honeypotelasticsearch monitoringenterprise networkingeuropeexploitexploitation activityfattfrfranceftp brute forcehackinghak5_cloud_c2havochoneytrap honeypothookbothttp brute forceidentity & access exploitationindicatorinjection activityintrusion detectioniociot securitylamplateral movementmailoney honeypotmalicious activitymalicious activity detectionmalicious softwaremalwaremalware behaviourmalware capturemythicnetsupportratnetworknetwork infrastructurenetwork intrusion attemptsnetwork scanningnetwork securitynetwork_trafficoceaniap0fpassword attackspegasusphishingphishing attackphishing trappotential malicious activityprocess injectionprotocol exploitationqakbotransomwareratreconnaissanceredis honeypotremcos trojanremote accessremote servicesresearchedresource hijackingscannerscripting attackssecurity policysensor-taggedsentrypeer botnetsftp attacksftp attackssip attackssip scansliversmtp brute forcesmtp probingsocial engineeringsocradar honeypotspamssh attackssh monitoringstellargroupsassupershellt1021t1021.001t1027t1040t1041t1055t1059t1059.003t1059.007t1071t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1204t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1566.004t1595t1595.001t1595.002t1595.003tannertargeting databasetelecommunicationstelnet threatthreat actorthreat detectionthreat intelligencethreat preventiontor nodetpotvoipvoip attackweb app attackweb application attackweb application scanweb attackweb exploitationweb spam
Activity Timeline
May 22May 22
Threat Activity Heatmap
· Peak: 2026-05-22LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
66
SIGNAL
Signal Score
66%
Confidence
11
Reports
First seenJun 28, 2025
Last seenMay 22, 2026
GeolocationFR
CountryFrance
LocationMarseille, Île-de-France
ASNAS214961
OrgPitline Ltd
Coords48.8640, 2.3310
VirusTotal
Not checked
WHOIS
- description
- ip:port combination that is used for botnet Command&control (C&C)
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 1 month ago
Appeared in 11 threat reports