IPMediumSignal 51/100
45.83.65.80
Location
Berlin, State of Berlin
ASN
AS208843
INTERNET-RESEARCH
First Seen
Sep 10, 2020
Last Seen
May 11, 2026
Found in 24 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
51%
Signal Score
51 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Germany
RegionBerlin, State of Berlin
ASNAS208843
OrganizationINTERNET-RESEARCH
Feed Intelligence Summary
24 reports51% confidence
24
Source reports
51%
Confidence score
Category tags
abuseaccessactive scanactive scanningaerospace & defensealpha_strike_labs-benignattackauto-generated securityautomotive manufacturingbad reputationbeningbening scannerbotnetbotnet activitybrute forcebrute force attackcivil servicescommand and controlcommunication protocolcowriecowrie honeypotcredential accesscredential harvestingcredential stuffingcyber securitydata exfiltrationdata store exposuredatabase securitydedecoy systemdefensedefense contractingdefense logisticsdefense systemsdefense technologydistributed attackselectronics manufacturingemaileuropeexploitation activityftpftp brute forcegermanygithubgovernment technologygroupshoneytrap honeypothttphttp scanneridentity & access exploitationindicatorindustrial automationindustrial iotindustrial productioninfrastructure acquisitionreconnaissanceinjection activityiociot securitylamplateral movementmailoney honeypotmalicious activitymalicious softwaremalwaremanualmanufacturing technologymilitary operationsmysqlnational securitynetworknetwork enumerationnetwork scanningnetwork securitynextraypassword attacksphishingphishing attackphishing trappotential malicious activityprocess injectionprocess manufacturingprotocol exploitationpublic administrationpublic infrastructurepublic policypythonquality controlransomwarereconnaissanceregulatory agenciesremote accessremote servicesresearchedsansscannerscriptsecurity operationsserver exploitationservice enumerationsftpsftp attackslugsmtp brute forcesocial engineeringsql injectionsshssh attackssh monitoringsupply chain attacksupply chain managementsurface webt1021t1021.001t1021.004t1040t1041t1055t1059t1059.003t1059.004t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1486t1496t1499.002t1499.003t1505.002t1565t1566.001t1566.002t1566.003t1566.004t1587.001t1590.001t1595t1595.001t1595.002t1595.003targeting databasetcp/21tcp/23tcp/3306tcp/5900tcp/80telnettelnet threatthreat actorthreat detectionthreat intelligencetor nodeunauthorized access attemptsunidentified attackerverified-benignvncvnc protocolweb traffic
Activity Timeline
May 11May 11
Threat Activity Heatmap
· Peak: 2026-05-11LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
51
SIGNAL
Signal Score
51%
Confidence
24
Reports
First seenSep 10, 2020
Last seenMay 11, 2026
GeolocationDE
CountryGermany
LocationBerlin, State of Berlin
ASNAS208843
OrgINTERNET-RESEARCH
Coords51.2993, 9.4910
VirusTotal
Not checked
WHOIS
- description
- Unknown source type: h0neytr4p
- raw
- inetnum: 45.83.64.1 - 45.83.67.255 descr: Internet Security Research Project - For exclude requests mail to [email protected] netname: INTERNET-RESEARCH-NET country: DE admin-c: JK14422-RIPE tech-c: SL13095-RIPE status: ASSIGNED PA mnt-by: mnt-de-alpha-1 created: 2019-06-03T12:02:31Z last-modified: 2022-05-03T08:33:27Z source: RIPE person: Alpha Strike Labs GmbH address: Albert-Einstein-Stra�e 14 address: 12489 address: Berlin address: GERMANY phone: +4930120877420 nic-hdl: JK14422-RIPE mnt-by: mnt-de-alpha-1 created: 2019-05-20T06:30:07Z last-modified: 2019-06-03T12:09:33Z source: RIPE person: Alpha Strike Labs GmbH address: Albert-Einstein-Stra�e 14 address: 12489 address: Berlin address: GERMANY phone: +4930120877420 nic-hdl: SL13095-RIPE mnt-by: mnt-de-alpha-1 created: 2019-05-20T06:30:07Z last-modified: 2025-07-07T10:09:35Z source: RIPE # Filtered route: 45.83.64.0/22 origin: AS208843 mnt-by: mnt-de-alpha-1 created: 2021-01-22T12:15:51Z last-modified: 2021-01-22T12:16:20Z source: RIPE
- references
- https://github.com/telekom-security/tpotce
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 5 years ago · Last seen 1 month ago
Appeared in 24 threat reports