IOC Radar
IPMediumSignal 75/100

207.180.233.81

Location
GermanyGermany
Lauterbourg, Bavaria
ASN
AS51167
Contabo GmbH
First Seen
Apr 9, 2026
Last Seen
May 22, 2026
Apr 9
First Seen
66d ago
May 22
Last Seen
23d ago
7
Reports
source reports
75%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
75%
Signal Score
75 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

13 techniques

Network Information

CountryDEGermany
RegionLauterbourg, Bavaria
ASNAS51167
OrganizationContabo GmbH

Feed Intelligence Summary

7 reports75% confidence
7
Source reports
75%
Confidence score
Category tags
active scanactive scanningbad web botblog spambotnet activitybrute forcebrute force attackbrute force attackerbrute-forcecredential accesscredential stuffingdata exfiltrationdata store exposuredatabase securityddosddos attackdenial of servicedigital oceaneuropeexploitation activityexploited hostfrfrancegermanyhackingidentity & access exploitationindicatorinjection activityinjection attacksmalwarenetherlandsnetworkpassword attacksportscanreconnaissanceresearchedscannerscannersservice scanspamsql injectionssht1059.003t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1499.001t1499.002t1595.001t1595.002t1595.003targeting databaseweb app attackweb application attackweb exploitation

Activity Timeline

1 total obs
May 22May 22

Threat Activity Heatmap

· Peak: 2026-05-22
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
75
SIGNAL
Signal Score
75%
Confidence
7
Reports
First seenApr 9, 2026
Last seenMay 22, 2026
GeolocationDE
CountryGermany
LocationLauterbourg, Bavaria
ASNAS51167
OrgContabo GmbH
Coords48.1046, 11.6002

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected port scanning DigitalOcean London (UK) honeypot
raw
inetnum: 207.180.224.0 - 207.180.255.255 netname: CONTABO descr: Contabo GmbH country: DE org: ORG-GG22-RIPE admin-c: MH7476-RIPE tech-c: MH7476-RIPE status: ASSIGNED PA mnt-by: MNT-CONTABO created: 2018-05-06T08:11:16Z last-modified: 2018-05-06T08:11:16Z source: RIPE organisation: ORG-GG22-RIPE org-name: Contabo GmbH country: DE org-type: LIR remarks: * Please direct all complaints about Internet abuse like Spam, hacking or scans * remarks: * to [email protected] . This will guarantee fastest processing possible. * address: Welfenstra�e 22 address: 81541 address: M�nchen address: GERMANY phone: +498921268372 fax-no: +498921665862 abuse-c: MH12453-RIPE mnt-ref: RIPE-NCC-HM-MNT mnt-ref: MNT-CONTABO mnt-ref: MNT-OCIRIS mnt-by: RIPE-NCC-HM-MNT mnt-by: MNT-CONTABO created: 2009-12-09T13:41:08Z last-modified: 2025-12-05T10:47:37Z source: RIPE # Filtered person: Johannes Selg address: Contabo GmbH address: Welfenstr. 22 address: 81541 M�nchen phone: +49 89 21268372 fax-no: +49 89 21665862 nic-hdl: MH7476-RIPE mnt-by: MNT-CONTABO mnt-by: MNT-GIGA-HOSTING created: 2010-01-04T10:41:37Z last-modified: 2025-12-05T12:12:21Z source: RIPE route: 207.180.232.0/23 descr: CONTABO origin: AS51167 mnt-by: MNT-CONTABO created: 2018-05-03T08:08:21Z last-modified: 2018-05-03T08:08:21Z source: RIPE

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 23 days ago
Appeared in 7 threat reports