IOC Radar
IPMediumSignal 73/100

45.144.28.61

Location
NetherlandsNetherlands
Meppel, TA
ASN
AS209847
WorkTitans B.V
First Seen
Oct 31, 2024
Last Seen
Feb 20, 2026
Oct 31
First Seen
590d ago
Feb 20
Last Seen
114d ago
9
Reports
source reports
73%
Confidence
medium
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
73%
Signal Score
73 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

37 techniques

Network Information

CountryNLNetherlands
RegionMeppel, TA
ASNAS209847
OrganizationWorkTitans B.V

Feed Intelligence Summary

9 reports73% confidence
9
Source reports
73%
Confidence score
Category tags
abuseactive scanningattackbotnetbrute forcebrute force attemptscommand and controlcommunication protocolcompromised credentialscowrie activitycowrie honeypotcowrie ssh attackscredential accesscredential harvestingcredential stuffingdata exfiltrationdecoy systemdionaea activitydionaea honeypotdistributed attackseuropeexploit probingftp brute forceheralding activityinitial accessisraellateral movementmailoney email attacksmailoney honeypotmalicious activitymalicious python scriptsmalicious softwaremalwaremalware behaviourmalware capturemalware hostingnetherlandsnetworknetwork intrusion attemptsnetwork scanningnetwork securitynlphishingphishing attackphishing trapprocess injectionproxyreconnaissanceresearchedresource hijackingscannersentrypeer activitysentrypeer attackssentrypeer botnetsftp access attemptsftp activitysftp attacksip attackssip brute forcesocial engineeringssh attackssh monitoringt1021t1021.001t1040t1041t1046t1053t1055t1059t1059.004t1068t1071.001t1078t1078.004t1083t1110t1110.001t1110.002t1110.003t1133t1190t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1566.004t1589t1590t1595t1595.001t1595.002t1595.003tannertelecommunicationsthreat actorthreat intelligenceunited kingdomvoipvoip attack

Activity Timeline

1 total obs
Feb 20Feb 20

Threat Activity Heatmap

· Peak: 2026-02-20
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
73
SIGNAL
Signal Score
73%
Confidence
9
Reports
First seenOct 31, 2024
Last seenFeb 20, 2026
GeolocationNL
CountryNetherlands
LocationMeppel, TA
ASNAS209847
OrgWorkTitans B.V
Coords32.0668, 34.7649

VirusTotal

Not checked

WHOIS

description
2025-04-25T22:25:00.605Z Honeypot : Tanner : Source: 45.144.28.61 : Port: 80 Post Data: {'response': {'message': {'sess_uuid': 'efd7ebda-a7cf-4e52-ab08-011557a3f5d4', 'detection': {'version': '0.6.0', 'order': 0, 'name': 'unknown', 'type': 1}}}, 'version': '0.6.0'}
raw
inetnum: 45.144.28.0 - 45.144.28.255 netname: THE-HOSTING country: NL geofeed: https://the.hosting/geofeed.csv org: ORG-THE3-RIPE admin-c: THE3 tech-c: THE3 status: ASSIGNED PA mnt-by: THE-HOSTING-MNT created: 2023-02-08T08:36:38Z last-modified: 2025-05-29T00:31:36Z source: RIPE organisation: ORG-THE3-RIPE org-name: WorkTitans B.V. org-type: OTHER address: Hoge Bothofstraat 39, 7511 ZA Enschede, Netherlands country: NL abuse-c: THE666 mnt-ref: THE-HOSTING-MNT mnt-ref: MEREZHA-MNT mnt-by: THE-HOSTING-MNT created: 2025-05-28T17:30:07Z last-modified: 2025-05-29T00:51:07Z source: RIPE # Filtered role: THE-HOSTING address: Hoge Bothofstraat 39, 7511 ZA Enschede, Netherlands nic-hdl: THE3 mnt-by: THE-HOSTING-MNT created: 2025-05-28T17:31:22Z last-modified: 2025-05-28T17:31:22Z source: RIPE # Filtered route: 45.144.28.0/24 origin: AS44477 mnt-by: THE-HOSTING-MNT created: 2023-02-08T08:38:14Z last-modified: 2025-05-29T01:00:19Z source: RIPE
references
https://github.com/telekom-security/tpotce

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 3 months ago
Appeared in 9 threat reports