IOC Radar
IPMediumSignal 33/100

45.155.37.109

Location
United KingdomUnited Kingdom
Coventry, ENG
ASN
AS395092
Shock Hosting LLC
First Seen
Jun 5, 2025
Last Seen
May 27, 2026
Jun 5
First Seen
374d ago
May 27
Last Seen
17d ago
7
Reports
source reports
33%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
33%
Signal Score
33 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

32 techniques

Network Information

CountryGBUnited Kingdom
RegionCoventry, ENG
ASNAS395092
OrganizationShock Hosting LLC

Feed Intelligence Summary

7 reports33% confidence
7
Source reports
33%
Confidence score
Category tags
abuseactive scanactive scanningbad reputationbotnetbotnet activitybrute forcebrute force attackcommand and controlcommunication protocolcredential accesscredential stuffingdata exfiltrationdata store exposureddosdenial of servicedistributed attackseuropeexploit attemptsexploitation activityftpftp brute forcegbhackinghttp brute forcehttp scanneridentity & access exploitationindicatorinitiator ipinjection activityintrusion detectionlateral movementmalicious softwaremalwaremalware propagationmalware scanningnetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork service scanningpassword attacksprocess injectionreconnaissanceremote accessremote servicesresearchedscannersecurity operationsservice scansmtp brute forcesql injection attemptsssh attackt1021t1021.001t1021.004t1040t1046t1055t1059t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1187t1190t1199t1210t1486t1496t1499.001t1499.002t1499.003t1563t1565t1588t1595t1595.001t1595.002t1595.003targeting databasetcp protocolthreat intelligencetor nodeunited kingdomweb traffic

Activity Timeline

1 total obs
May 27May 27

Threat Activity Heatmap

· Peak: 2026-05-27
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
33
SIGNAL
Signal Score
33%
Confidence
7
Reports
First seenJun 5, 2025
Last seenMay 27, 2026
GeolocationGB
CountryUnited Kingdom
LocationCoventry, ENG
ASNAS395092
OrgShock Hosting LLC
Coords51.5095, -0.0955

VirusTotal

Not checked

WHOIS

raw
inetnum: 45.155.36.0 - 45.155.39.255 netname: US-SHOCK1-20190917 country: NL org: ORG-SHL22-RIPE admin-c: AS41675-RIPE tech-c: AS41675-RIPE status: ALLOCATED PA mnt-by: mnt-us-shock1-1 mnt-by: RIPE-NCC-HM-MNT created: 2021-10-04T11:42:40Z last-modified: 2021-10-04T11:42:40Z source: RIPE organisation: ORG-SHL22-RIPE org-name: Shock Hosting LLC country: US org-type: LIR address: 371 Hoes Lane, Suite 200 address: 08854 address: Piscataway address: UNITED STATES phone: +1 732-812-8020 admin-c: AS41675-RIPE tech-c: AS41675-RIPE abuse-c: AR48484-RIPE mnt-ref: mnt-us-shock1-1 mnt-by: RIPE-NCC-HM-MNT mnt-by: mnt-us-shock1-1 created: 2018-09-28T09:12:43Z last-modified: 2024-07-02T04:25:00Z source: RIPE # Filtered person: Ashton Sherman address: 371 Hoes Lane, Suite 200 address: 08854 address: Piscataway address: UNITED STATES phone: +1 732-812-8020 nic-hdl: AS41675-RIPE mnt-by: mnt-us-shock1-1 created: 2018-09-28T09:12:43Z last-modified: 2024-07-02T04:26:45Z source: RIPE route: 45.155.36.0/22 origin: AS395092 mnt-by: mnt-us-shock1-1 created: 2021-11-03T20:57:44Z last-modified: 2021-11-03T20:57:44Z source: RIPE

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 17 days ago
Appeared in 7 threat reports