IOC Radar
IPMediumSignal 75/100

41.82.60.83

Location
SenegalSenegal
Dakar, DK
ASN
AS8346
SONATEL-AS Autonomous System
First Seen
Apr 16, 2026
Last Seen
Apr 24, 2026
Apr 16
First Seen
59d ago
Apr 24
Last Seen
52d ago
9
Reports
source reports
75%
Confidence
medium
8/91
VirusTotal
detections
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
75%
Signal Score
75 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountrySNSenegal
RegionDakar, DK
ASNAS8346
OrganizationSONATEL-AS Autonomous System

Feed Intelligence Summary

9 reports75% confidence
9
Source reports
75%
Confidence score
Category tags
active scanaptbrute forcebruteforceexploitexploitation activityindicatornetworkresearchedscannersenegalsshssh attackthreat actortor nodetpotvulnerability scanvulnerability-exploitation

Activity Timeline

1 total obs
Apr 24Apr 24

Threat Activity Heatmap

· Peak: 2026-04-24
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
75
SIGNAL
Signal Score
75%
Confidence
9
Reports
First seenApr 16, 2026
Last seenApr 24, 2026
GeolocationSN
CountrySenegal
LocationDakar, DK
ASNAS8346
OrgSONATEL-AS Autonomous System
Coords14.6670, -17.4445

VirusTotal

8/ 91vendors flagged
9% detection rateJun 4, 2026

WHOIS

description
Score: 60/100. Labels: abuseipdb:brute-force, abuseipdb:critical, abuseipdb:hacking, abuseipdb:port-scan, abuseipdb:reported, abuseipdb:ssh. Attacker IP 41.82.60.83 observed using SSH client fingerprint 'Unknown SSH Client (03a80b21afa8)' 26 times when connecting to db1lapetro between 2026-04-16 22:06 and 2026-04-16 22:43 UTC.
raw
inetnum: 41.82.60.0 - 41.82.63.255 netname: ip-pool-isplocal-Orange-bas6 descr: POOL ADSL REGION country: SN admin-c: AM2490-AFRINIC tech-c: AC60-AFRINIC tech-c: MK67-AFRINIC tech-c: AM2490-AFRINIC status: ASSIGNED PA remarks: POOL ADSL ORANGE SENEGAL mnt-by: SMM-MNT source: AFRINIC # Filtered parent: 41.82.0.0 - 41.83.255.255 person: Ada COUNDOUL address: Societe Nationale Des Telecommunications Du Senegal address: 64, Voie de Dégagement Nord ( VDN) address: BP: 69 Dakar, Dakar 11000, Sénégal address: Dakar address: Senegal phone: tel:+221-33-879-32-22 nic-hdl: AC60-AFRINIC mnt-by: GENERATED-OABZUXWTSVYUNNWBC02XNDDYELT8WE8C-MNT source: AFRINIC # Filtered person: Alpha Mbodj nic-hdl: AM2490-AFRINIC address: Sonatel address: Direction des Reseaux address: 64, Voie de D�gagement Nord ( VDN), BP: 69 Dakar, Dakar 11000, S�n�gal address: Dakar address: Senegal phone: tel:+221-77-450-11-34 phone: tel:+221-33-879-32-22 remarks: data has been transferred from RIPE Whois Database 20050221 mnt-by: GENERATED-D213FIGFCNKOOUJTZJ7WVXSVQ6M8JHGW-MNT source: AFRINIC # Filtered person: Maty KHOUMA address: Societe Nationale Des Telecommunications Du Senegal address: 64, Voie de Dégagement Nord ( VDN) address: BP: 69 Dakar, Dakar 11000, Sénégal address: Dakar address: Senegal phone: tel:+221-33-879-32-22 nic-hdl: MK67-AFRINIC mnt-by: GENERATED-6PDJXPPDRGPSYXLKSVMCX5DN12N50AG4-MNT source: AFRINIC # Filtered route: 41.82.0.0/15 descr: Route Object origin: AS8346 mnt-lower: SMM-MNT mnt-by: AFRINIC-HM-MNT source: AFRINIC # Filtered
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 1 month ago
Appeared in 9 threat reports