IPMediumSignal 52/100
45.154.98.70
Location
Lelystad, Flevoland
ASN
AS210558
1337 Services GmbH
First Seen
Nov 10, 2022
Last Seen
Jun 6, 2026
Nov 10
First Seen
1314d ago
Jun 6
Last Seen
10d ago
22
Reports
source reports
52%
Confidence
medium
4/91
VirusTotal
detections
Found in 22 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
52%
Signal Score
52 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Netherlands
RegionLelystad, Flevoland
ASNAS210558
Organization1337 Services GmbH
Feed Intelligence Summary
22 reports52% confidence
22
Source reports
52%
Confidence score
Category tags
abuseaccess controlactiveactive scanactive scanningapacheapache attackeraptarmasciiasiaasyncratattackautomated brute forcebackdoorbad reputationbad web botbase64base64-loaderbitbucketblacklisted ipblog spambookingbotnetbotnet activitybotnetdomainbrute forcebrute force attackc2censyschatgbtcobaltstrikecode injectioncoinminercommand & controlcommand and controlcommand executioncompromised hostsconnected devicescredential accesscredential harvestingcredential stuffingcryptocurrencydahua-skiddanabotdata exfiltrationdata store exposuredcratddosddos attackddos attacksdecoydenial of servicedevice managementdistributed attacksdocdosbotelfencodedenumerationeuropeexeexecutable fileexploitation activityexploited hostfakeappfakecaptchafirst seenfraud ordersftp brute-forcegafgytgh0stratguloaderhackinghajimehong kongidentity & access exploitationindicatorindustrial iotinfostealerinfrastructure acquisitionreconnaissanceinjection activityinternet of thingsintrusion detectioniot analyticsiot applicationsiot botnetiot platformsiot securityiot/ics attackjpg-base64-loaderkaijilast seenlnklogin brute forcelummastealermalicious activitymalicious powershell activitymalicious softwaremalwaremanualmichealmipsmirai botnetmirai.tbotmoobotmozimultiratnetherlandsnetworknetwork probingnetwork scanningnetwork securitynetwork traffic analysisopendirpassword attackspassword crackingpdfphishingphishing attackpossible intrusionprocess injectionps1quasarratransomwareratreconnaissanceremcos trojanremcosratremote accessremote servicesresearchedrev-base64-loaderrisksaint helena, ascension and tristan da cunhascams & fraudscannerscripting attackssecurity operationssecurity policyskidsmart devicessmartloadersocial engineeringspamssh attacksshdkitstatusstrelastealersupplyst1021t1021.001t1027t1040t1046t1055t1059t1059.001t1059.003t1059.007t1071t1071.001t1078t1086t1105t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1203t1204t1204.001t1204.002t1486t1496t1497t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1573.001t1587.001t1588t1590.001t1595t1595.001t1595.002t1595.003tagsthreat actorthreat intelligencethreat preventiontor nodetypeua-wgetvbevbsvipkeyloggervulnerability scanweb app attackweb application attackweb exploitationweb spamwsgidavxml-opendirxwormzip
Activity Timeline
Jun 6Jun 6
Threat Activity Heatmap
· Peak: 2026-06-06LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
52
SIGNAL
Signal Score
52%
Confidence
22
Reports
First seenNov 10, 2022
Last seenJun 6, 2026
GeolocationNL
CountryNetherlands
LocationLelystad, Flevoland
ASNAS210558
Org1337 Services GmbH
Coords52.5150, 5.4847
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 3 years ago · Last seen 10 days ago
Appeared in 22 threat reports