IOC Radar
IPMediumSignal 92/100

77.220.212.11

Location
NetherlandsNetherlands
Oude Meer, North Holland
ASN
AS211381
Podaon SIA
First Seen
Dec 30, 2024
Last Seen
Mar 8, 2026
Dec 30
First Seen
538d ago
Mar 8
Last Seen
105d ago
12
Reports
source reports
92%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
92%
Signal Score
92 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

21 techniques

Network Information

CountryNLNetherlands
RegionOude Meer, North Holland
ASNAS211381
OrganizationPodaon SIA

Feed Intelligence Summary

12 reports92% confidence
12
Source reports
92%
Confidence score
Category tags
abuseactive scanningattackaustraliaauthenticationauto-generated securitybotnetbrute forcebrute force attackbrute force attemptcommand and controlcredential accesscredential stuffingctadata exfiltrationdistributed attackseuropeindicatormalicious activitymalicious softwaremalwarenetherlandsnetworknetwork intrusionnetwork securityoceaniapassword attacksprocess injectionreconnaissanceremote accessremote servicesresearchedscannerssh attackt1021.004t1055t1071.001t1078t1078.002t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.002t1499.003t1555t1565t1589t1589.002t1595.001t1595.002t1595.003threat actor

Activity Timeline

1 total obs
Mar 8Mar 8

Threat Activity Heatmap

· Peak: 2026-03-08
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
92
SIGNAL
Signal Score
92%
Confidence
12
Reports
First seenDec 30, 2024
Last seenMar 8, 2026
GeolocationNL
CountryNetherlands
LocationOude Meer, North Holland
ASNAS211381
OrgPodaon SIA
Coords52.3824, 4.8995

VirusTotal

Not checked

WHOIS

description
Host bruteforcing SSH
raw
inetnum: 77.220.212.0 - 77.220.212.127 netname: NET-3-16 country: NL org: ORG-PS469-RIPE admin-c: PS25001-RIPE tech-c: PSN68-RIPE abuse-c: AR69429-RIPE status: ASSIGNED PA geofeed: https://geofeed.podaon.com/geofeed.csv mnt-by: always-online-mnt mnt-by: lir-lv-podaon-1-MNT created: 2024-06-19T08:39:40Z last-modified: 2024-06-19T08:39:40Z source: RIPE organisation: ORG-PS469-RIPE org-name: Podaon SIA country: LV org-type: LIR address: Ernesta Birznieka-Upisa 18 address: LV-1050 address: Riga address: LATVIA phone: +371 287 10 286 admin-c: PS25001-RIPE tech-c: PS25001-RIPE abuse-c: AR69429-RIPE mnt-ref: lir-lv-podaon-1-MNT mnt-by: RIPE-NCC-HM-MNT mnt-by: lir-lv-podaon-1-MNT created: 2022-11-29T10:11:26Z last-modified: 2023-05-18T13:21:05Z source: RIPE # Filtered role: Podaon SIA address: Latvia, Riga, Ernesta Birznieka-Upisa 18, LV-1050 nic-hdl: PS25001-RIPE mnt-by: lir-lv-podaon-1-MNT created: 2022-11-29T10:11:24Z last-modified: 2023-04-04T08:44:10Z source: RIPE # Filtered role: Podaon SIA - NOC address: Latvia, Riga, Ernesta Birznieka-Upisa 18, LV-1050 nic-hdl: PSN68-RIPE mnt-by: lir-lv-podaon-1-MNT created: 2023-04-04T08:19:34Z last-modified: 2023-04-04T08:19:34Z source: RIPE # Filtered route: 77.220.212.0/24 origin: AS211381 mnt-by: always-online-mnt mnt-by: lir-lv-podaon-1-MNT created: 2024-06-17T13:04:14Z last-modified: 2024-06-17T13:04:14Z source: RIPE
references
https://redpiranha.net

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 3 months ago
Appeared in 12 threat reports