IPMediumSignal 48/100
200.80.126.174
Location
São Luís, Maranhão
ASN
AS271291
CS+TELECOMUNICACOES LTDA
First Seen
Apr 8, 2026
Last Seen
Apr 10, 2026
Found in 6 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
48%
Signal Score
48 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Brazil
RegionSão Luís, Maranhão
ASNAS271291
OrganizationCS+TELECOMUNICACOES LTDA
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
6 reports48% confidence
6
Source reports
48%
Confidence score
Category tags
active scanactive scanningbrazilbrute forcebrute force attackcredential accesscredential stuffingexploitation activityidentity & access exploitationimapimap attackindicatornetworkpassword attacksproxyreconnaissanceresearchedscannersmtpsmtp attackersouth americassh attackt1110.001t1110.002t1110.003t1110.004t1595.001t1595.002t1595.003
Activity Timeline
Apr 10Apr 10
Threat Activity Heatmap
· Peak: 2026-04-10LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
This Indicator of Compromise (IOC), an IPv4 address, signals a significant and active threat that warrants immediate attention. With a score of 48.02 and no whitelist status, it is firmly associated with malicious activities, including credential attacks and extensive network scanning. Specifically, this IP has been observed engaging in tactics such as password guessing, brute force attempts, and various forms of reconnaissance scanning. The potential impact on an organization is substantial, ra…
Threat ScoreMedium Risk
48
SIGNAL
Signal Score
48%
Confidence
6
Reports
First seenApr 8, 2026
Last seenApr 10, 2026
GeolocationBR
CountryBrazil
LocationSão Luís, Maranhão
ASNAS271291
OrgCS+TELECOMUNICACOES LTDA
Coords-3.1006, -45.0336
Proxy
VirusTotal
Not checked
WHOIS
- raw
- Socket not responding: [Errno 111] Connection refused
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 2 months ago
Appeared in 6 threat reports