IOC Radar
IPMediumSignal 96/100

81.134.88.56

Location
United KingdomUnited Kingdom
London, England
ASN
AS2856
BT Public Internet Service
First Seen
Dec 15, 2024
Last Seen
Feb 15, 2026
Dec 15
First Seen
557d ago
Feb 15
Last Seen
129d ago
14
Reports
source reports
96%
Confidence
medium
Found in 14 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
96%
Signal Score
96 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

39 techniques

Network Information

CountryGBUnited Kingdom
RegionLondon, England
ASNAS2856
OrganizationBT Public Internet Service

Feed Intelligence Summary

14 reports96% confidence
14
Source reports
96%
Confidence score
Category tags
abuseaccess controlactive scanningasiaattackbotnetbrute forcebrute force attackcommand and controlcommunication protocolcredential accesscredential harvestingcredential stuffingdata exfiltrationddos attacksdecoy systemdenial of servicedistributed attackseuropeftpftp brute forcegbhttp brute forceindicatorinfrastructure acquisitionreconnaissanceinitial accessinternet of thingsintrusion detectioniot botnetiot/ics attackkazakhstankaznetmalicious activitymalicious softwaremalwaremanualmirai botnetnetworknetwork attacksnetwork probingnetwork protocolnetwork scanningnetwork securitynetwork traffic analysispassword attacksphishing attackpossible botnet activitypossible reconnaissance activityprocess injectionprotocol exploitationreconnaissanceremote accessremote servicesresearchedscanscannersecurity policysmtp brute forcesocial engineeringssh attackt1018t1021t1021.001t1040t1046t1053t1055t1059t1059.004t1071.001t1076t1078t1083t1110t1110.001t1110.002t1110.003t1110.004t1190t1486t1496t1499.001t1499.002t1499.003t1563t1565t1566t1566.001t1566.002t1566.003t1583t1583.001t1583.002t1587.001t1590.001t1595t1595.001t1595.002t1595.003tcp protocoltelecommunicationstelnet threatthreat actorthreat intelligencethreat preventionunauthorized access attemptunited kingdomunited kingdom of great britain and northern ireland

Activity Timeline

1 total obs
Feb 15Feb 15

Threat Activity Heatmap

· Peak: 2026-02-15
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
96
SIGNAL
Signal Score
96%
Confidence
14
Reports
First seenDec 15, 2024
Last seenFeb 15, 2026
GeolocationGB
CountryUnited Kingdom
LocationLondon, England
ASNAS2856
OrgBT Public Internet Service
Coords51.5072, -0.1276

VirusTotal

Not checked

WHOIS

description
Information from proprietary sensors in the KazNET
raw
inetnum: 81.134.80.0 - 81.134.95.255 netname: BT-ADSL descr: BT-ADSL country: GB admin-c: BS1474-RIPE tech-c: BS1474-RIPE status: ASSIGNED PA remarks: Please send abuse notification to [email protected] mnt-by: BTNET-MNT mnt-lower: BTNET-MNT mnt-routes: BTNET-MNT created: 2016-02-02T09:47:28Z last-modified: 2016-02-02T09:47:28Z source: RIPE role: BTnet Support address: Adhara address: Adastral Park address: Martlesham Heath address: Ipswich address: SUFFLK IP5 3RE address: GB phone: +44 800 0858963 5 phone: +44 1473 336231 admin-c: FLS15-RIPE tech-c: BS1474-RIPE nic-hdl: BS1474-RIPE remarks: For all queries contact [email protected] remarks: Please send delisting issues to [email protected] mnt-by: BTNET-MNT created: 2002-04-30T07:54:10Z last-modified: 2009-11-19T15:52:52Z source: RIPE # Filtered route: 81.128.0.0/12 descr: BT Public Internet Service origin: AS2856 mnt-by: BTNET-INFRA-MNT created: 2005-06-16T14:11:53Z last-modified: 2014-07-31T07:47:16Z source: RIPE # Filtered
references
https://threats.kz

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 4 months ago
Appeared in 14 threat reports