IPLowSignal 31/100
83.234.227.53
Location
Khasan, Primorye
ASN
AS20485
Skyfreight
First Seen
Jan 29, 2025
Last Seen
Jan 29, 2025
Found in 2 reports. Confidence: low. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
31%
Signal Score
31 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Russian Federation
RegionKhasan, Primorye
ASNAS20485
OrganizationSkyfreight
Feed Intelligence Summary
2 reports31% confidence
2
Source reports
31%
Confidence score
Category tags
active scanningadministrative platformaptc2 infrastructurecredential accesscryptocurrency threatscryptojackingdata breachdata exfiltrationdata theftfinanceindicatorkorea, democratic people's republic ofkoreanlazaruslazarus groupmalware deliverynetworkoperation phantom circuitransomwarereact frameworkreconnaissanceremote access toolsresearchedresource hijackingruscanning activityspamt1003t1011t1021t1049t1059t1071t1078t1090t1102t1106t1195t1486t1496t1566t1574t1588t1595t1595.001t1595.002t1595.003web application
Activity Timeline
Jan 29Jan 29
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreLow Risk
31
SIGNAL
Signal Score
31%
Confidence
2
Reports
First seenJan 29, 2025
Last seenJan 29, 2025
GeolocationRU
CountryRussian Federation
LocationKhasan, Primorye
ASNAS20485
OrgSkyfreight
Coords42.4241, 130.6520
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
lowFirst detected 1 year ago · Last seen 1 year ago
Appeared in 2 threat reports