IOC Radar
IPHighVerifiedSignal 45/100

61.3.23.41

Location
IndiaIndia
Hubballi, KA
ASN
AS9829
Bharat Sanchar Nigam Ltd
First Seen
Apr 20, 2025
Last Seen
Jan 26, 2026
Apr 20
First Seen
427d ago
Jan 26
Last Seen
147d ago
5
Reports
source reports
45%
Confidence
high
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
45%
Signal Score
45 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

21 techniques

Network Information

CountryINIndia
RegionHubballi, KA
ASNAS9829
OrganizationBharat Sanchar Nigam Ltd

Feed Intelligence Summary

5 reports45% confidence
5
Source reports
45%
Confidence score
Category tags
active scanningasiabotnetbrute forcebrute force attackcommand and controlcredential accesscredential stuffingdata exfiltrationdistributed attacksexploited hosthackingindiaindicatorinitial accessmalicious softwaremalwarenetworknetwork securitynetwork service scanningnorth americapassword attacksprocess injectionprotocol exploitationreconnaissanceremote accessresearchedscannerscanning activityt1021.001t1040t1055t1059.001t1071.001t1078t1078.001t1110t1110.001t1110.002t1110.003t1110.004t1190t1486t1496t1499.002t1499.003t1565t1595.001t1595.002t1595.003tcp/23telnet threatunited states

Activity Timeline

1 total obs
Jan 26Jan 26

Threat Activity Heatmap

· Peak: 2026-01-26
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
45
SIGNAL
Signal Score
45%
Confidence
5
Reports
First seenApr 20, 2025
Last seenJan 26, 2026
Verified IOC
GeolocationIN
CountryIndia
LocationHubballi, KA
ASNAS9829
OrgBharat Sanchar Nigam Ltd
Coords15.3581, 75.1417

VirusTotal

Not checked

WHOIS

description
Logged 3 visits on 1 honeypot. Average duration: 3.4s, supplied credentials on each visit, used 3 distinct usernames and 3 distinct passwords, did not successfully log in
raw
inetnum: 61.3.0.0 - 61.3.255.255 netname: BB-Multiplay descr: Broadband Multiplay Project, O/o DGM BB, NOC BSNL Bangalore country: IN admin-c: BH155-AP tech-c: DB374-AP abuse-c: AB1061-AP status: ALLOCATED NON-PORTABLE mnt-by: MAINT-IN-DOT mnt-irt: IRT-BSNL-IN last-modified: 2021-07-15T07:16:07Z source: APNIC irt: IRT-BSNL-IN address: Internet Cell address: Bharat Sanchar Nigam Limited. address: 8th Floor,148-B Statesman House address: Barakhamba Road, New Delhi - 110 001 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: NC83-AP tech-c: CGMD1-AP auth: # Filtered remarks: [email protected] was validated on 2025-07-02 mnt-by: MAINT-IN-DOT last-modified: 2025-07-02T04:53:55Z source: APNIC role: ABUSE BSNLIN country: ZZ address: Internet Cell address: Bharat Sanchar Nigam Limited. address: 8th Floor,148-B Statesman House address: Barakhamba Road, New Delhi - 110 001 phone: +000000000 e-mail: [email protected] admin-c: NC83-AP tech-c: CGMD1-AP nic-hdl: AB1061-AP remarks: Generated from irt object IRT-BSNL-IN remarks: [email protected] was validated on 2025-07-02 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-07-02T04:54:12Z source: APNIC person: BSNL Hostmaster nic-hdl: BH155-AP e-mail: [email protected] address: Broadband Networks address: Bharat Sanchar Nigam Limited address: 2nd Floor, Telephone Exchange, Sector 62 address: Noida phone: +91-120-2404243 fax-no: +91-120-2404241 country: IN mnt-by: MAINT-IN-PER-DOT last-modified: 2021-12-08T10:52:18Z source: APNIC person: DGM Broadband address: BSNL NOC Bangalore country: IN phone: +91-080-25805800 fax-no: +91-080-25800022 e-mail: [email protected] nic-hdl: DB374-AP mnt-by: MAINT-IN-PER-DOT last-modified: 2011-02-19T10:03:44Z source: APNIC route: 61.3.20.0/22 origin: AS9829 descr: Bharat Sanchar Nigam Ltd O/o Chief General Manager, Data Networks, BSNL CTS Compond, Netaji Nagar mnt-by: MAINT-IN-DOT last-modified: 2020-10-20T11:51:53Z source: APNIC
references
https://raw.githubusercontent.com/ahamed-rizvan/IOCs/refs/heads/main/Malicous%20IP%20Address.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 4 months ago
Appeared in 5 threat reports