IOC Radar
IPMediumSignal 76/100

38.43.154.57

Location
United StatesUnited States
San Francisco De Borja, Lima region
ASN
AS271814
Nextnet S.A.C
First Seen
Dec 11, 2024
Last Seen
Apr 10, 2026
Dec 11
First Seen
547d ago
Apr 10
Last Seen
63d ago
10
Reports
source reports
76%
Confidence
medium
Found in 10 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

27 techniques

Network Information

CountryUSUnited States
RegionSan Francisco De Borja, Lima region
ASNAS271814
OrganizationNextnet S.A.C

Feed Intelligence Summary

10 reports76% confidence
10
Source reports
76%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningattackaustraliabad reputationbad web botbotnetbotnet activitybrute forcebrute force attackbrute force attackscommunication protocolcowrie honeypotcredential accesscredential compromisecredential stuffingdata encryptiondatabase securityddosdecoy systemdenial of servicedionaea honeypotencryptionexploit attemptsexploitation activityexploited hostfattftpftp brute forcehackinghoneytrap honeypothttp brute forcehttp scannerhttp scanningidentity & access exploitationindicatorinjection activityioclateral movementmailoney honeypotmalicious activitymalwaremalware behaviourmalware capturemalware distributionmssqlmssql brute forcenetworknetwork intrusionnetwork intrusion attemptsnetwork probingnetwork protocolnetwork scanningnetwork securitynorth americaoceaniap0fpassword attacksperuphishingphishing attackphishing trapprotocol exploitationreconnaissanceremote accessremote servicesresearchedresource hijackingscannersecurity operationssecurity policysensor-taggedsentrypeer botnetserver exploitationsmb brute forcesouth americasql injectionssh attackssh monitoringt-pott1021t1021.001t1021.002t1040t1046t1059t1059.003t1071.001t1077t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1496t1499.001t1499.002t1505.002t1590t1595t1595.001t1595.002t1595.003tannertargeting databasetelnet threatthreat actorthreat detectionthreat intelligencethreat preventiontor nodetpotunited statesvnc protocolvoip attackweb application attackweb exploitationweb traffic

Activity Timeline

1 total obs
Apr 10Apr 10

Threat Activity Heatmap

· Peak: 2026-04-10
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
10
Reports
First seenDec 11, 2024
Last seenApr 10, 2026
GeolocationUS
CountryUnited States
LocationSan Francisco De Borja, Lima region
ASNAS271814
OrgNextnet S.A.C
Coords-12.0891, -76.9988

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 2 months ago
Appeared in 10 threat reports