IOC Radar
IPMediumSignal 31/100

31.44.2.141

Location
NetherlandsNetherlands
Amsterdam, North Holland
ASN
AS208951
ITGLOBAL-vStack
First Seen
Mar 24, 2025
Last Seen
Apr 12, 2026
Mar 24
First Seen
449d ago
Apr 12
Last Seen
65d ago
12
Reports
source reports
31%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
31%
Signal Score
31 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

31 techniques

Network Information

CountryNLNetherlands
RegionAmsterdam, North Holland
ASNAS208951
OrganizationITGLOBAL-vStack

Feed Intelligence Summary

12 reports31% confidence
12
Source reports
31%
Confidence score
Category tags
abuseactive scanactive scanningaustraliabad reputationbotnetbotnet activitybrute forcebrute force attackcommand and controlcommunication protocolcredential accesscredential harvestingcredential stuffingdata exfiltrationdata store exposuredecoy systemdistributed attackseuropeexploitation activityidentity & access exploitationinjection activityipv4 scanmalicious softwaremalwarenetherlandsnetworknetwork enumerationnetwork probingnetwork reconnaissancenetwork scanningnetwork securityoceaniapassword attacksphishingphishing attackprocess injectionproxyreconnaissanceresearchedscanscannersip scanningsocial engineeringssh attackssh scanningt1021t1021.004t1040t1046t1055t1059t1071.001t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1486t1496t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1583t1583.001t1583.002t1583.003t1583.004t1595t1595.001t1595.002t1595.003telecommunicationsthreat actorthreat intelligencetor nodeunauthorized accessunknown threat actorvoip

Activity Timeline

1 total obs
Apr 12Apr 12

Threat Activity Heatmap

· Peak: 2026-04-12
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
31
SIGNAL
Signal Score
31%
Confidence
12
Reports
First seenMar 24, 2025
Last seenApr 12, 2026
GeolocationNL
CountryNetherlands
LocationAmsterdam, North Holland
ASNAS208951
OrgITGLOBAL-vStack
Coords52.3824, 4.8995

VirusTotal

Not checked

WHOIS

description
IPV4 hosts detected performing scans on production environment located in Australia.
raw
inetnum: 31.44.2.0 - 31.44.2.255 netname: NL-ITGLOBAL-vStack country: NL admin-c: INLA2-RIPE tech-c: INLA2-RIPE geofeed: https://geofeed.itglobal.com/geofeed.csv status: ASSIGNED PA mnt-by: MNT-ITGLOBAL-NL created: 2021-04-26T11:39:33Z last-modified: 2024-12-27T11:17:45Z source: RIPE role: ITGLOBAL NL LIR Administrators address: 1101 CT, NL, Amsterdam, Herikerbergweg 292 admin-c: RK11164-RIPE admin-c: AB43104-RIPE admin-c: IV2192-RIPE tech-c: RK11164-RIPE tech-c: IV2192-RIPE tech-c: AB43104-RIPE nic-hdl: INLA2-RIPE mnt-by: MNT-ITGLOBAL-NL created: 2020-02-12T09:58:30Z last-modified: 2022-07-22T15:22:16Z source: RIPE # Filtered route: 31.44.2.0/24 origin: AS208951 mnt-by: MNT-ITGLOBAL-NL created: 2021-04-26T11:40:03Z last-modified: 2021-04-26T11:40:03Z source: RIPE
references
https://redpiranha.net

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 2 months ago
Appeared in 12 threat reports