IOC Radar
IPMediumSignal 100/100

60.135.148.175

Location
JapanJapan
Minato-ku, Tokyo
ASN
AS17676
Japan Nation-wide Network of Softbank Corp.
First Seen
Jun 25, 2022
Last Seen
Mar 3, 2026
Jun 25
First Seen
1459d ago
Mar 3
Last Seen
112d ago
20
Reports
source reports
99%
Confidence
medium
Found in 20 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

46 techniques

Network Information

CountryJPJapan
RegionMinato-ku, Tokyo
ASNAS17676
OrganizationJapan Nation-wide Network of Softbank Corp.

Feed Intelligence Summary

20 reports99% confidence
20
Source reports
99%
Confidence score
Category tags
abuseaccessaccess controlactive scanningadbhoney activityadbhoney honeypotasiaattackblacklist candidatebotnetbrute forcebrute force attackbrute force attemptcisco devicecommand and controlcommunication protocolcowriecowrie activitycowrie attackcowrie honeypotcredential accesscredential harvestingcredential stuffingctadata exfiltrationddos attackddos attacksdecoy systemdevice managementdionaeadionaea activitydionaea attackdionaea honeypotdistributed attacksemailenterprise networkingftp brute forcegithubgroupshackinghoneytrap activityhoneytrap honeypothttp scannerindexindicatorinformation technologyinfrastructure acquisitionreconnaissanceinternet of thingsintrusion detectioniociot botnetiot/ics attackjapanjpkfsensor honeypotlamplamp attacklamp stack attackmailoney activitymailoney honeypotmalicious activitymalicious network activitymalicious softwaremalwaremalware behaviourmalware capturemanualmirai botnetnetworknetwork attacksnetwork infrastructurenetwork intrusionnetwork probingnetwork reconnaissancenetwork scanningnetwork securitynetwork service scanningpassword attacksphishingphishing attackphishing trapprocess injectionprotocol exploitationproxypythonreconnaissanceremote accessremote servicesresearchedresource hijackingscanscannerscriptscripting attackssecurity policysentrypeer activitysentrypeer botnetservice probingsftpsftp activitysftp attacksipsip scanningslugsocial engineeringsshssh attackssh monitoringsurface webt1016t1021t1021.001t1021.002t1040t1041t1046t1055t1056.001t1059t1059.001t1059.004t1059.007t1071t1071.001t1076t1078t1078.001t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1203t1204.002t1486t1496t1499.001t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1566.004t1587.001t1589t1590.001t1595t1595.001t1595.002t1595.003tannertanner attacktcp protocoltelecommunicationstelnet threatthreat actorthreat detectionthreat intelligencethreat preventiontpotcevoipvoip attackweb attackweb exploitationweb traffic

Activity Timeline

1 total obs
Mar 3Mar 3

Threat Activity Heatmap

· Peak: 2026-03-03
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
20
Reports
First seenJun 25, 2022
Last seenMar 3, 2026
GeolocationJP
CountryJapan
LocationMinato-ku, Tokyo
ASNAS17676
OrgJapan Nation-wide Network of Softbank Corp.
Coords35.6629, 139.7610

VirusTotal

Not checked

WHOIS

description
2025-02-02T20:12:10.442Z Honeypot : Tanner : Source: 60.135.148.175 : Port: 80 Post Data: {'version': '0.6.0', 'response': {'message': {'detection': {'version': '0.6.0', 'order': 1, 'name': 'index', 'type': 1}, 'sess_uuid': 'd6519208-7ca2-49f9-ba32-9a689c3622ba'}}}
raw
inetnum: 60.128.0.0 - 60.159.255.255 netname: BBTEC descr: Japan Nation-wide Network of Softbank Corp. country: JP org: ORG-SC4-AP admin-c: SA421-AP tech-c: SA421-AP abuse-c: AS2391-AP status: ALLOCATED PORTABLE remarks: -------------------------------------------------------- remarks: To report network abuse, please contact mnt-irt remarks: For troubleshooting, please contact tech-c and admin-c remarks: Report invalid contact via www.apnic.net/invalidcontact remarks: -------------------------------------------------------- mnt-by: APNIC-HM mnt-lower: MAINT-JP-BBTECH mnt-routes: MAINT-JP-BBTECH mnt-irt: IRT-SOFTBANK-JP last-modified: 2024-09-20T04:27:31Z source: APNIC irt: IRT-SOFTBANK-JP address: Tokyo Portcity Takeshiba Office Tower 21F address: 1-7-1, Kaigan address: Minatoku,Tokyo, Japan e-mail: [email protected] abuse-mailbox: [email protected] admin-c: KF291-AP tech-c: KF291-AP auth: # Filtered remarks: [email protected] was validated on 2025-04-30 mnt-by: MAINT-JP-BBTECH last-modified: 2025-04-30T03:07:34Z source: APNIC organisation: ORG-SC4-AP org-name: SOFTBANK Corp. org-type: LIR country: JP address: Tokyo Portcity Takeshiba Office Tower 22F address: 1-7-1, Kaigan phone: +81-3-6889-6365 e-mail: [email protected] mnt-ref: APNIC-HM mnt-by: APNIC-HM last-modified: 2023-09-05T02:14:51Z source: APNIC role: ABUSE SOFTBANKJP country: ZZ address: Tokyo Portcity Takeshiba Office Tower 21F address: 1-7-1, Kaigan address: Minatoku,Tokyo, Japan phone: +000000000 e-mail: [email protected] admin-c: KF291-AP tech-c: KF291-AP nic-hdl: AS2391-AP remarks: Generated from irt object IRT-SOFTBANK-JP remarks: [email protected] was validated on 2025-04-30 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-04-30T03:07:53Z source: APNIC role: SoftbankBB ABUSE address: Tokyo Portcity Takeshiba Office Tower 22F, 1-7-1, Kaigan, Minatoku,Tokyo country: JP phone: +81-3-6688-5120 e-mail: [email protected] remarks: Please send spam report,virus alart remarks: or any other abuse report remarks: to [email protected] remarks: Any other Information, Notice, remarks: Please send to [email protected] admin-c: KF291-AP tech-c: KF291-AP nic-hdl: SA421-AP mnt-by: MAINT-JP-BBTECH last-modified: 2024-03-26T02:44:48Z source: APNIC
references
https://blog.edie.io/2020/04/30/diy-ip-threat-feed/, https://github.com/tankmek/threatfeed, https://github.com/telekom-security/tpotce

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 3 months ago
Appeared in 20 threat reports