IOC Radar
IPMediumSignal 61/100

8.210.65.56

Location
Hong KongHong Kong
Hong Kong, Hong Kong
ASN
AS45102
Hong Kong
First Seen
Feb 14, 2025
Last Seen
Jun 7, 2026
Feb 14
First Seen
494d ago
Jun 7
Last Seen
16d ago
16
Reports
source reports
61%
Confidence
medium
Found in 16 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
61%
Signal Score
61 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

36 techniques

Network Information

CountryHKHong Kong
RegionHong Kong, Hong Kong
ASNAS45102
OrganizationHong Kong

Feed Intelligence Summary

16 reports61% confidence
16
Source reports
61%
Confidence score
Category tags
amadeyantispamapkarmasiaasyncratbackdoorbase64bitbucketbookingbotnetbotnetdomainbrute forcebrute_forcec2c2 domaincensyscertchinese threat actorcn3232cobalt_strikecobaltstrikecoinminercommand and controlcredential accesscredential harvestingcredential stuffingcredential_accesscvedata encryptiondata exfiltrationddosddos attacksdeserializationdistributed attackselfelf binaryeurope/asiaexeexploitextortionfakecaptchaftpgafgytgithubgreedhajimehkhong konghtaindicatorinfostealerinfrastructure acquisitionreconnaissanceinternet of thingsiot botnetiot/ics attackjpg-base64-loaderjsplnklog4jlummastealermalicious softwaremalicious url disseminationmalwaremanualminermipsmirai botnetmoobotmozimultiratnetweaver visual composernetworknetwork securitynetwork_reconnaissancenjratopendirphishingphishing attackpost requestprocess injectionprotocol exploitationps1quasarratransomwarerceredlinestealerremcosratremote accessremote code executionremote servicesresearchedrev-base64-loaderrustystealersaint helena, ascension and tristan da cunhasapscripting languageshellcodesocial engineeringssh attacksshdkitstealerstegosupply chain attacksystem disruptiont1021t1021.001t1027t1040t1055t1059t1059.004t1059.007t1068t1071t1071.001t1076t1078t1105t1110t1110.002t1133t1189t1190t1204t1210t1486t1490t1496t1499.002t1499.003t1505.003t1563t1565t1566t1566.001t1566.002t1566.003t1587.001t1590.001t1595telnet threattriadaturkeyua-wgetvulnerabilityweb application exploitationweb developmentweb shellwsgidavxenoratxml-opendir

Activity Timeline

1 total obs
Jun 7Jun 7

Threat Activity Heatmap

· Peak: 2026-06-07
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
61
SIGNAL
Signal Score
61%
Confidence
16
Reports
First seenFeb 14, 2025
Last seenJun 7, 2026
GeolocationHK
CountryHong Kong
LocationHong Kong, Hong Kong
ASNAS45102
OrgHong Kong
Coords22.2855, 114.1577

VirusTotal

Not checked

WHOIS

description
ip:port combination that is used for botnet Command&control (C&C)
raw
inetnum: 8.208.0.0 - 8.223.255.255 netname: ASEPL-SG descr: Alibaba Cloud (Singapore) Private Limited descr: 51 Bras Basah Road #03-06 Lazada One Singapore 189554, Singapore country: SG org: ORG-ASEP1-AP admin-c: ASEP1-AP tech-c: ASEP1-AP abuse-c: AA1926-AP status: ALLOCATED PORTABLE remarks: -------------------------------------------------------- remarks: To report network abuse, please contact mnt-irt remarks: For troubleshooting, please contact tech-c and admin-c remarks: Report invalid contact via www.apnic.net/invalidcontact remarks: -------------------------------------------------------- mnt-by: APNIC-HM mnt-lower: MAINT-ASEPL-SG mnt-routes: MAINT-ASEPL-SG mnt-irt: IRT-ASEPL-SG last-modified: 2023-11-09T06:37:20Z source: APNIC irt: IRT-ASEPL-SG address: 1 Raffles Place # 59-00 One Raffles Place, Tower One Singapore, Singapore e-mail: [email protected] abuse-mailbox: [email protected] admin-c: ASEP1-AP tech-c: ASEP1-AP auth: # Filtered remarks: [email protected] was validated on 2025-04-14 mnt-by: MAINT-ASEPL-SG last-modified: 2025-04-14T07:19:15Z source: APNIC organisation: ORG-ASEP1-AP org-name: Alibaba Cloud (Singapore) Private Limited org-type: LIR country: SG address: 51 Bras Basah Road # 03-06 Lazada One Singapore 189554 phone: +8657185022088-76449 e-mail: [email protected] mnt-ref: APNIC-HM mnt-by: APNIC-HM last-modified: 2024-07-11T12:55:24Z source: APNIC role: ABUSE ASEPLSG country: ZZ address: 1 Raffles Place # 59-00 One Raffles Place, Tower One Singapore, Singapore phone: +000000000 e-mail: [email protected] admin-c: ASEP1-AP tech-c: ASEP1-AP nic-hdl: AA1926-AP remarks: Generated from irt object IRT-ASEPL-SG remarks: [email protected] was validated on 2025-04-14 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-04-14T07:19:41Z source: APNIC role: Alibabacom Singapore E-Commerce Private Limited a address: 1 Raffles Place #59-00 One Raffles Place, Tower One Singapore, Singapore country: SG phone: +86-571-85022088 fax-no: +86-571-85022088 e-mail: [email protected] admin-c: ASEP1-AP tech-c: ASEP1-AP nic-hdl: ASEP1-AP mnt-by: MAINT-ASEPL-SG last-modified: 2015-12-10T01:04:19Z source: APNIC route: 8.210.65.0/24 origin: AS134963 descr: Alibaba.com Singapore E-Commerce Private Limited 8 Shenton Way, #45-01 AXA Tower, Singapore 068811 mnt-by: MAINT-ASEPL-SG last-modified: 2020-01-20T07:41:51Z source: APNIC route: 8.210.65.0/24 origin: AS45102 descr: Alibaba.com Singapore E-Commerce Private Limited 8 Shenton Way, #45-01 AXA Tower, Singapore 068811 mnt-by: MAINT-ASEPL-SG last-modified: 2020-01-20T07:03:08Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 16 days ago
Appeared in 16 threat reports