IOC Radar
IPMediumSignal 55/100

59.182.21.178

Location
IndiaIndia
Nellore, Andhra Pradesh
ASN
AS9829
Mahanagar Telephone Nigam Limited
First Seen
Jun 30, 2025
Last Seen
Jul 5, 2025
Jun 30
First Seen
359d ago
Jul 5
Last Seen
353d ago
7
Reports
source reports
55%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
55%
Signal Score
55 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

43 techniques

Network Information

CountryINIndia
RegionNellore, Andhra Pradesh
ASNAS9829
OrganizationMahanagar Telephone Nigam Limited

Feed Intelligence Summary

7 reports55% confidence
7
Source reports
55%
Confidence score
Category tags
access controlactive scanningasiaattackbotnetbotnet activity detectedbrute forcebrute force attackbrute force attacksc2c2 communicationcommand and controlcompromised hostscredential accesscredential stuffingdata exfiltrationddos preparationdistributed attacksexploit attemptsftp brute forcehttp scanninghttps scanningindiaindicatorlateral movementmalicious activitymalicious softwaremalwaremalware distributionnetworknetwork enumerationnetwork intrusionnetwork scanningnetwork securitypassword attacksprocess injectionprotocol exploitationproxy activityreconnaissanceresearchedscannersecurity policysmtp scanningssh attackt1003t1005t1016t1018t1021t1040t1043t1047t1053t1053.005t1055t1056t1059t1071t1071.001t1071.002t1071.004t1078t1083t1090t1090.001t1090.002t1090.003t1110.001t1110.002t1110.003t1110.004t1133t1190t1486t1496t1497t1499.002t1499.003t1550t1552t1555t1556t1565t1573t1595.001t1595.002t1595.003telnet threatthreat actorthreat prevention

Activity Timeline

1 total obs
Jul 5Jul 5

Threat Activity Heatmap

· Peak: 2025-07-05
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
55
SIGNAL
Signal Score
55%
Confidence
7
Reports
First seenJun 30, 2025
Last seenJul 5, 2025
GeolocationIN
CountryIndia
LocationNellore, Andhra Pradesh
ASNAS9829
OrgMahanagar Telephone Nigam Limited
Coords14.4333, 79.9667

VirusTotal

Not checked

WHOIS

raw
inetnum: 59.176.0.0 - 59.185.255.255 netname: MTNL descr: Mahanagar Telephone Nigam Limited country: IN admin-c: AB782-AP tech-c: SM2089-AP status: ALLOCATED PORTABLE mnt-by: MAINT-IN-IRINN mnt-lower: MAINT-IN-MTNL mnt-routes: MAINT-IN-MTNL mnt-irt: IRT-MTNL-IN last-modified: 2016-12-14T04:38:46Z source: APNIC irt: IRT-MTNL-IN address: Jeevan Bharati Building address: Tower 1, 12th Floor, 124, Connaught Circus, New Delhi e-mail: [email protected] abuse-mailbox: [email protected] admin-c: AB782-AP tech-c: SM2089-AP auth: # Filtered mnt-by: MAINT-IN-MTNL last-modified: 2022-07-01T08:44:20Z source: APNIC role: Senior Manager address: Mahanagar Doorsanchar Sadan, 5th Floor, 9 CGO Complex, Lodhi Road, New Delhi ,New Delhi,Delhi-110003 country: IN phone: +91 01124325185 e-mail: [email protected] admin-c: AB782-AP tech-c: AB782-AP nic-hdl: SM2089-AP mnt-by: MAINT-IN-MTNL last-modified: 2016-12-14T06:25:35Z source: APNIC person: Amarjeetkaur Bedi address: Mahanagar Doorsanchar Sadan, 5th Floor, 9 CGO Complex, Lodhi Road, New Delhi ,New Delhi,Delhi-110003 country: IN phone: +91 01124325185 e-mail: [email protected] nic-hdl: AB782-AP mnt-by: MAINT-IN-MTNL last-modified: 2016-12-14T06:28:12Z source: APNIC route: 59.182.16.0/20 descr: MTNL Mumbai Route descr: Mahanagar Telephone Nigam Limited, New Delhi country: IN origin: AS17813 mnt-by: MAINT-IN-MTNL last-modified: 2008-09-04T07:54:48Z source: APNIC route: 59.182.16.0/20 descr: MTNL Pool ROUTE OBJECT Through BSNL origin: AS9829 mnt-by: MAINT-IN-IRINN mnt-routes: MAINT-IN-MTNL notify: [email protected] last-modified: 2023-04-16T23:13:29Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 11 months ago · Last seen 11 months ago
Appeared in 7 threat reports