IOC Radar
IPMediumSignal 57/100

36.94.105.46

Location
IndonesiaIndonesia
Kota Cilegon, Jakarta
ASN
AS7713
Telekomunikasi Indonesia
First Seen
Oct 24, 2024
Last Seen
Jun 12, 2026
Oct 24
First Seen
606d ago
Jun 12
Last Seen
10d ago
12
Reports
source reports
57%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
57%
Signal Score
57 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

37 techniques

Network Information

CountryIDIndonesia
RegionKota Cilegon, Jakarta
ASNAS7713
OrganizationTelekomunikasi Indonesia

Feed Intelligence Summary

12 reports57% confidence
12
Source reports
57%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningasiaattackaustraliabad reputationbad web botblacklist candidateblog spambotnetbotnet activitybrute forcebrute force attackbrute force attackerbrute force attacksbrute-forcebruteforcecommand and controlcommunication protocolcowriecowrie honeypotcredential accesscredential harvestingcredential stuffingctadata encryptiondata exfiltrationdata store exposureddosddos attacksdecoy systemdenial of servicedigital oceandionaeadionaea honeypotdistributed attacksencryptionexploitation activityexploited hostfattftphackinghoneytrap honeypothttp scannerididentity & access exploitationindicatorindonesiainjection activityinternet of thingsintrusion detectioniot botnetiot securityiot targetediot/ics attacklateral movementmailoney honeypotmalicious activitymalicious softwaremalwaremalware behaviourmalware capturemirai botnetnetworknetwork attacksnetwork intrusion attemptsnetwork probenetwork probingnetwork protocolnetwork scannetwork scanningnetwork securityoceaniap0fpassword attacksphishingphishing attackphishing trapportscanprocess injectionprotocol exploitationreconnaissanceremote accessremote servicesresearchedresource hijackingscanscannerscannerssecurity policysensor-taggedsentrypeer botnetservice scansmtpsocial engineeringspamssh attackssh monitoringt1021t1021.001t1021.002t1040t1046t1055t1059t1068t1071.001t1076t1077t1078t1105t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1210t1486t1496t1499.001t1499.002t1499.003t1550.003t1562t1563t1565t1566.001t1566.002t1566.003t1595t1595.001t1595.002t1595.003tannertcp protocoltelecommunicationstelnet threatthreat actorthreat detectionthreat intelligencethreat preventiontor nodetpotvoipvoip attackvultrweb application attackweb exploitationweb spamweb traffic

Activity Timeline

1 total obs
Jun 12Jun 12

Threat Activity Heatmap

· Peak: 2026-06-12
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
57
SIGNAL
Signal Score
57%
Confidence
12
Reports
First seenOct 24, 2024
Last seenJun 12, 2026
GeolocationID
CountryIndonesia
LocationKota Cilegon, Jakarta
ASNAS7713
OrgTelekomunikasi Indonesia
Coords-6.1810, 106.8260

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected port scanning Vultr Tokyo (Japan) honeypot

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 10 days ago
Appeared in 12 threat reports