IOC Radar
IPHighVerifiedSignal 63/100

31.57.134.207

Location
TurkeyTurkey
Istanbul, Istanbul
ASN
AS205733
Livaproxy Yazilim Ticaret Limited Sirketi
First Seen
Apr 13, 2026
Last Seen
Apr 25, 2026
Apr 13
First Seen
61d ago
Apr 25
Last Seen
49d ago
3
Reports
source reports
63%
Confidence
high
Found in 3 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
63%
Signal Score
63 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

2 techniques

Network Information

CountryTRTurkey
RegionIstanbul, Istanbul
ASNAS205733
OrganizationLivaproxy Yazilim Ticaret Limited Sirketi

Feed Intelligence Summary

3 reports63% confidence
3
Source reports
63%
Confidence score
Category tags
active scanbotnetbotnet activitycowrie honeypotdecoy systemdionaea honeypoteurope/asiaexploitation activityfatthoneytrap honeypotmailoney honeypotmalicious activitymalwaremalware behaviourmalware capturenetworkp0fphishingphishing attackphishing trapproxyresearchedresource hijackingscannersensor-taggedsentrypeer botnetssh attackssh monitoringt1496t1499.001tannerthreat actorthreat detectionthreat intelligencetor nodetpotturkeyvoip attack

Activity Timeline

1 total obs
Apr 25Apr 25

Threat Activity Heatmap

· Peak: 2026-04-25
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
63
SIGNAL
Signal Score
63%
Confidence
3
Reports
First seenApr 13, 2026
Last seenApr 25, 2026
Verified IOC
GeolocationTR
CountryTurkey
LocationIstanbul, Istanbul
ASNAS205733
OrgLivaproxy Yazilim Ticaret Limited Sirketi
Coords41.0082, 28.9784

VirusTotal

Not checked

WHOIS

description
Observed on T-Pot within last 24h; sensors=p0f; threshold?1; private IPs excluded. geo=AE; ports=443 Location=Sydney, Australia.

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 2 months ago · Last seen 1 month ago
Appeared in 3 threat reports