IOC Radar
IPMediumSignal 32/100

71.6.233.27

Location
United StatesUnited States
Boston, Massachusetts
ASN
AS10439
Rapid7 Labs - Traffic originating from this network is expected and part of Project Sonar opendata.rapid7.com/about
First Seen
Oct 2, 2020
Last Seen
May 20, 2026
Oct 2
First Seen
2095d ago
May 20
Last Seen
39d ago
8
Reports
source reports
32%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
32%
Signal Score
32 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

7 techniques

Network Information

CountryUSUnited States
RegionBoston, Massachusetts
ASNAS10439
OrganizationRapid7 Labs - Traffic originating from this network is expected and part of Project Sonar opendata.rapid7.com/about

Feed Intelligence Summary

8 reports32% confidence
8
Source reports
32%
Confidence score
Category tags
abusebad reputationbotnetbotnet activitycommand and controldata exfiltrationdata store exposuredistributed attacksexploitation activityindicatorinjection activitymalicious softwaremalwarenetworknorth americaprocess injectionrapid7sonar-benignresearchedsanst1055t1071.001t1486t1496t1499.002t1499.003t1565united statesverified-benign

Activity Timeline

1 total obs
May 20May 20

Threat Activity Heatmap

· Peak: 2026-05-20
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
32
SIGNAL
Signal Score
32%
Confidence
8
Reports
First seenOct 2, 2020
Last seenMay 20, 2026
GeolocationUS
CountryUnited States
LocationBoston, Massachusetts
ASNAS10439
OrgRapid7 Labs - Traffic originating from this network is expected and part of Project Sonar opendata.rapid7.com/about
Coords42.3538, -71.0574

VirusTotal

Not checked

WHOIS

raw
CariNet, Inc. CARINET-5 (NET-71-6-128-0-1) 71.6.128.0 - 71.6.255.255 Rapid7 Labs - Traffic originating from this network is expected and part of Rapid7 Labs Project Sonar opendata.rapid7.com/about NET-71-6-233-0-24 (NET-71-6-233-0-1) 71.6.233.0 - 71.6.233.255

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 5 years ago · Last seen 1 month ago
Appeared in 8 threat reports