IPMediumSignal 73/100
45.144.28.61
Location
Meppel, TA
ASN
AS209847
WorkTitans B.V
First Seen
Oct 31, 2024
Last Seen
Feb 20, 2026
Found in 9 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
73%
Signal Score
73 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Netherlands
RegionMeppel, TA
ASNAS209847
OrganizationWorkTitans B.V
Feed Intelligence Summary
9 reports73% confidence
9
Source reports
73%
Confidence score
Category tags
abuseactive scanningattackbotnetbrute forcebrute force attemptscommand and controlcommunication protocolcompromised credentialscowrie activitycowrie honeypotcowrie ssh attackscredential accesscredential harvestingcredential stuffingdata exfiltrationdecoy systemdionaea activitydionaea honeypotdistributed attackseuropeexploit probingftp brute forceheralding activityinitial accessisraellateral movementmailoney email attacksmailoney honeypotmalicious activitymalicious python scriptsmalicious softwaremalwaremalware behaviourmalware capturemalware hostingnetherlandsnetworknetwork intrusion attemptsnetwork scanningnetwork securitynlphishingphishing attackphishing trapprocess injectionproxyreconnaissanceresearchedresource hijackingscannersentrypeer activitysentrypeer attackssentrypeer botnetsftp access attemptsftp activitysftp attacksip attackssip brute forcesocial engineeringssh attackssh monitoringt1021t1021.001t1040t1041t1046t1053t1055t1059t1059.004t1068t1071.001t1078t1078.004t1083t1110t1110.001t1110.002t1110.003t1133t1190t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1566.004t1589t1590t1595t1595.001t1595.002t1595.003tannertelecommunicationsthreat actorthreat intelligenceunited kingdomvoipvoip attack
Activity Timeline
Feb 20Feb 20
Threat Activity Heatmap
· Peak: 2026-02-20LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
73
SIGNAL
Signal Score
73%
Confidence
9
Reports
First seenOct 31, 2024
Last seenFeb 20, 2026
GeolocationNL
CountryNetherlands
LocationMeppel, TA
ASNAS209847
OrgWorkTitans B.V
Coords32.0668, 34.7649
VirusTotal
Not checked
WHOIS
- description
- 2025-04-25T22:25:00.605Z Honeypot : Tanner : Source: 45.144.28.61 : Port: 80 Post Data: {'response': {'message': {'sess_uuid': 'efd7ebda-a7cf-4e52-ab08-011557a3f5d4', 'detection': {'version': '0.6.0', 'order': 0, 'name': 'unknown', 'type': 1}}}, 'version': '0.6.0'}
- raw
- inetnum: 45.144.28.0 - 45.144.28.255 netname: THE-HOSTING country: NL geofeed: https://the.hosting/geofeed.csv org: ORG-THE3-RIPE admin-c: THE3 tech-c: THE3 status: ASSIGNED PA mnt-by: THE-HOSTING-MNT created: 2023-02-08T08:36:38Z last-modified: 2025-05-29T00:31:36Z source: RIPE organisation: ORG-THE3-RIPE org-name: WorkTitans B.V. org-type: OTHER address: Hoge Bothofstraat 39, 7511 ZA Enschede, Netherlands country: NL abuse-c: THE666 mnt-ref: THE-HOSTING-MNT mnt-ref: MEREZHA-MNT mnt-by: THE-HOSTING-MNT created: 2025-05-28T17:30:07Z last-modified: 2025-05-29T00:51:07Z source: RIPE # Filtered role: THE-HOSTING address: Hoge Bothofstraat 39, 7511 ZA Enschede, Netherlands nic-hdl: THE3 mnt-by: THE-HOSTING-MNT created: 2025-05-28T17:31:22Z last-modified: 2025-05-28T17:31:22Z source: RIPE # Filtered route: 45.144.28.0/24 origin: AS44477 mnt-by: THE-HOSTING-MNT created: 2023-02-08T08:38:14Z last-modified: 2025-05-29T01:00:19Z source: RIPE
- references
- https://github.com/telekom-security/tpotce
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 3 months ago
Appeared in 9 threat reports