IOC Radar
IPMediumSignal 46/100

200.53.204.105

Location
BrazilBrazil
Guarulhos, SP
ASN
AS262807
Redfox Telecomunicações Ltda
First Seen
Apr 15, 2026
Last Seen
May 21, 2026
Apr 15
First Seen
59d ago
May 21
Last Seen
23d ago
8
Reports
source reports
46%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
46%
Signal Score
46 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryBRBrazil
RegionGuarulhos, SP
ASNAS262807
OrganizationRedfox Telecomunicações Ltda

IP Category

Proxy
Proxy server

Feed Intelligence Summary

8 reports46% confidence
8
Source reports
46%
Confidence score
Category tags
active scanaptbrbrazilexploitation activityimapimap attackindicatornetworkproxyresearchedscannersmtpsmtp attackersouth americathreat actortor node

Activity Timeline

1 total obs
May 21May 21

Threat Activity Heatmap

· Peak: 2026-05-21
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
46
SIGNAL
Signal Score
46%
Confidence
8
Reports
First seenApr 15, 2026
Last seenMay 21, 2026
GeolocationBR
CountryBrazil
LocationGuarulhos, SP
ASNAS262807
OrgRedfox Telecomunicações Ltda
Coords-23.4118, -46.4392
Proxy

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
Socket not responding: [Errno 111] Connection refused
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 23 days ago
Appeared in 8 threat reports