IOC Radar
IPMediumSignal 0/100

48.216.197.50

Location
United StatesUnited States
Boydton, Virginia
ASN
AS8075
Microsoft Azure Cloud (eastus)
First Seen
Mar 4, 2025
Last Seen
Aug 5, 2025
Mar 4
First Seen
478d ago
Aug 5
Last Seen
323d ago
1
Reports
source reports
0%
Confidence
medium
Found in 1 report. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryUSUnited States
RegionBoydton, Virginia
ASNAS8075
OrganizationMicrosoft Azure Cloud (eastus)

Feed Intelligence Summary

1 report0% confidence
1
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched

Activity Timeline

1 total obs
Aug 5Aug 5

Threat Activity Heatmap

· Peak: 2025-08-05
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Intelligence SummaryAI Generated

This Indicator of Compromise (IOC) pertains to an IPv4 address that has been explicitly whitelisted. With a very low threat score of 0.0, this indicator is considered benign and poses negligible risk to the organization. There is no corroborating evidence suggesting malicious intent or activity associated with this specific entry. Its inclusion in threat intelligence feeds, in this particular context, does not inherently signify hostile behavior or an active threat. Therefore, no urgent containm…

Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
1
Reports
First seenMar 4, 2025
Last seenAug 5, 2025
GeolocationUS
CountryUnited States
LocationBoydton, Virginia
ASNAS8075
OrgMicrosoft Azure Cloud (eastus)
Coords36.6777, -78.3747

VirusTotal

Not checked

WHOIS

description
2024-11-23T18:25:43.000Z Honeypot : Honeytrap : Source: 48.216.197.50 : Port: 1962 Message: {'protocol': 'tcp', 'payload': {'md5_hash': 'd992a8475755caeb83f32fa501419046', 'sha512_hash': '018beb62bd19eb374631f6bec5cd7e54ec3692f653d1da9c98e73337cbc373792bb296ba4d1b281746b244f1206f21be7fac70019cfcdf09df3a9ef3683cb67e', 'length': 24, 'data_hex': '4d474c4e44445f39392e31382e32362e32315f313936320a'}}

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 10 months ago
Appeared in 1 threat report