IPMediumSignal 61/100
204.76.203.189
Location
Eygelshoven, Saint Paul Charlestown
ASN
AS51396
Intelligence Hosting LLC
First Seen
Jan 29, 2025
Last Seen
Jun 3, 2026
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
61%
Signal Score
61 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Saint Kitts and Nevis
RegionEygelshoven, Saint Paul Charlestown
ASNAS51396
OrganizationIntelligence Hosting LLC
Feed Intelligence Summary
11 reports61% confidence
11
Source reports
61%
Confidence score
Category tags
abuseaccount compromiseactive scanactive scanningattackaustraliabad reputationbad web botbotnetbotnet activitybrute forcebrute force attackbrute force attackercloud environmentcloud infrastructurecloud infrastructure attackcloud servicescommand and controlcommunication protocolcowrie honeypotcredential accesscredential harvestingcredential stuffingdata encryptiondata exfiltrationdata store exposuredatabase attackdatabase securityddosddos attackdecoy systemdenial of servicedigital oceandionaea honeypotdistributed attacksencryptioneuropeexploitation activityexploited hostexternal threatfattftpftp brute forcegermanyhackinghoneytrap honeypothttp scannerhttpsidentity & access exploitationindicatorinitial accessinjection activityinjection attacksinternet facing systemsintrusion detectioniociocsipv4ipv4 addresseslateral movementmailoney honeypotmalicious activitymalwaremalware behaviourmalware capturenetherlandsnetworknetwork attacksnetwork discoverynetwork intrusion attemptsnetwork probingnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynloceaniap0fpassword attacksphishingphishing attackphishing trapping of deathprotocol exploitationreconnaissanceremote accessremote servicesresearchedresource hijackingsaint kitts and nevisscannerscannersscanning activitysecurity operationssensor-taggedsentrypeer botnetservice discoverysmtpsocial engineeringspamssh attackssh monitoringsystem accesst1021t1021.001t1021.002t1040t1046t1059t1059.003t1071t1071.001t1076t1077t1078t1090t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1203t1486t1496t1499.001t1499.002t1499.003t1563t1566.001t1566.002t1566.003t1590t1590.005t1595t1595.001t1595.002t1595.003tannertargeting databasetcp protocoltcp scanningtelecommunicationstelnet threatthreat actorthreat detectionthreat intelligencetor nodetpotvoipvoip attackweb application attackweb exploitweb exploitationweb spamweb traffic
Activity Timeline
Jun 3Jun 3
Threat Activity Heatmap
· Peak: 2026-06-03LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
61
SIGNAL
Signal Score
61%
Confidence
11
Reports
First seenJan 29, 2025
Last seenJun 3, 2026
GeolocationKN
CountrySaint Kitts and Nevis
LocationEygelshoven, Saint Paul Charlestown
ASNAS51396
OrgIntelligence Hosting LLC
Coords50.8897, 6.0563
VirusTotal
Not checked
WHOIS
- raw
- Intelligence Hosting LLC INTEL-NET1-25 (NET-204-76-203-0-1) 204.76.203.0 - 204.76.203.255 Pfcloud UG PFCLOUD-UG (NET-204-76-203-0-2) 204.76.203.0 - 204.76.203.255
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 11 days ago
Appeared in 11 threat reports