IPMediumSignal 47/100
24.25.246.237
Location
Honolulu, HI
ASN
AS20001
Spectrum
First Seen
Feb 7, 2025
Last Seen
Apr 5, 2026
Found in 13 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
47%
Signal Score
47 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
United States
RegionHonolulu, HI
ASNAS20001
OrganizationSpectrum
Feed Intelligence Summary
13 reports47% confidence
13
Source reports
47%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningattackbad reputationbotnetbotnet activitybotnet activity detectedbrute forcebrute force attackbrute force attemptc2 communicationcommand & controlcommand and controlcommunication protocolcompromised systemcredential accesscredential harvestingcredential stuffingctadata exfiltrationdata store exposureddosddos attacksddos participationdecoy systemdistributed attacksexploitexploit activityexploitation activityexploited hosthackingidentity & access exploitationindicatorinjection activityinternet of thingsintrusion detectioniociot botnetiot securityiot/ics attackmalicious activitymalicious domainmalicious linksmalicious network activitymalicious softwaremalwaremalware distributionmirai botnetnetworknetwork attacksnetwork intrusionnetwork probingnetwork reconnaissancenetwork scanningnetwork securitynetwork service scanningnorth americapassword attacksphishingphishing attackprocess injectionprotocol exploitationransomwarereconnaissanceresearchedscanscannersecurity operationssecurity policyself-signedservice scansocial engineeringsocradar honeypotspamssh attackt1021.001t1021.002t1040t1046t1055t1056.001t1059t1059.001t1071t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1204.001t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1573.001t1595t1595.001t1595.002t1595.003tcp protocoltelecommunicationstelnet threatthreat actorthreat intelligencethreat preventiontor nodeunited statesunited states of americausweb security
Activity Timeline
Apr 5Apr 5
Threat Activity Heatmap
· Peak: 2026-04-05LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
47
SIGNAL
Signal Score
47%
Confidence
13
Reports
First seenFeb 7, 2025
Last seenApr 5, 2026
GeolocationUS
CountryUnited States
LocationHonolulu, HI
ASNAS20001
OrgSpectrum
Coords21.3133, -157.8230
VirusTotal
Not checked
WHOIS
- description
- Scans hitting the server at TCP port 23 Telnet. Same IP should not appear more than once in 96 hours in our lists S3#.
- raw
- NetRange: 24.24.0.0 - 24.29.255.255 CIDR: 24.24.0.0/14, 24.28.0.0/15 NetName: ROAD-RUNNER-1 NetHandle: NET-24-24-0-0-1 Parent: NET24 (NET-24-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: Charter Communications Inc (CC-3517) RegDate: 2000-06-09 Updated: 2011-07-06 Ref: https://rdap.arin.net/registry/ip/24.24.0.0 OrgName: Charter Communications Inc OrgId: CC-3517 Address: 6175 S. Willow Dr City: Greenwood Village StateProv: CO PostalCode: 80111 Country: US RegDate: 2018-10-10 Updated: 2022-09-14 Comment: Legacy Time Warner Cable IP Assets Ref: https://rdap.arin.net/registry/entity/CC-3517 OrgAbuseHandle: ABUSE19-ARIN OrgAbuseName: Abuse OrgAbusePhone: +1-877-777-2263 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE19-ARIN OrgTechHandle: IPADD1-ARIN OrgTechName: IPAddressing OrgTechPhone: +1-866-248-7662 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/IPADD1-ARIN
- references
- https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt, https://raw.githubusercontent.com/ahamed-rizvan/IOCs/refs/heads/main/Malicous%20IP%20Address.txt
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 2 months ago
Appeared in 13 threat reports