IPMediumSignal 63/100
90.144.90.242
Location
Stockholm, AB
ASN
AS1257
Tele2 Broadband
First Seen
Jul 6, 2025
Last Seen
Feb 28, 2026
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
63%
Signal Score
63 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Sweden
RegionStockholm, AB
ASNAS1257
OrganizationTele2 Broadband
Feed Intelligence Summary
12 reports63% confidence
12
Source reports
63%
Confidence score
Category tags
abuseaccess controlactive scanningattackaustraliaauthenticationbotnetbrute forcebrute force attackbrute force attemptbrute force attemptscommand and controlcredential accesscredential stuffingcredentialsdata exfiltrationdistributed attackseuropeindicatormalicious activitymalicious softwaremalwarenetworkoceaniapassword attackspassword crackingprocess injectionreconnaissanceremote accessresearchedscannersecurity operationssecurity policyssh attackswedent1003t1021t1021.004t1055t1071.001t1078t1078.002t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.002t1499.003t1555t1555.003t1565t1595.001t1595.002t1595.003threat actorthreat intelligencethreat prevention
Activity Timeline
Feb 28Feb 28
Threat Activity Heatmap
· Peak: 2026-02-28LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
63
SIGNAL
Signal Score
63%
Confidence
12
Reports
First seenJul 6, 2025
Last seenFeb 28, 2026
GeolocationSE
CountrySweden
LocationStockholm, AB
ASNAS1257
OrgTele2 Broadband
Coords59.3333, 18.0500
VirusTotal
Not checked
WHOIS
- description
- Host bruteforcing SSH
- raw
- inetnum: 90.144.64.0 - 90.144.95.255 netname: SE-TELE2-CUST descr: Tele2 Broadband Customers descr: #################################### descr: In case of improper use, please mail descr: <[email protected]> descr: #################################### country: SE language: SE admin-c: SWIP-RIPE tech-c: SWIP-RIPE status: ASSIGNED PA mnt-by: SWIPNET-LIR-MNT mnt-routes: COMHEM-MNT created: 2019-09-12T11:27:07Z last-modified: 2022-03-21T15:47:47Z source: RIPE role: Swipnet Staff address: Tele2 AB/Swedish IP Network address: IP Registry address: Torshamnsgatan 17 164 40 Kista SWEDEN fax-no: +46 8 5626 42 10 abuse-mailbox: [email protected] remarks: The database object describes the staff of SWIPNET LIR. admin-c: ROSI3-RIPE admin-c: TH6544-RIPE tech-c: ROSI3-RIPE tech-c: TH6544-RIPE nic-hdl: SWIP-RIPE mnt-by: SWIPNET-LIR-MNT created: 2002-03-21T14:25:04Z last-modified: 2022-11-23T10:36:53Z source: RIPE # Filtered route: 90.144.64.0/19 origin: AS1257 mnt-by: AS1257-MNT created: 2021-07-13T10:14:08Z last-modified: 2021-07-13T10:14:08Z source: RIPE route: 90.144.64.0/19 origin: AS39651 mnt-by: COMHEM-MNT created: 2019-10-07T11:28:33Z last-modified: 2019-10-07T11:28:33Z source: RIPE
- references
- https://redpiranha.net
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 11 months ago · Last seen 3 months ago
Appeared in 12 threat reports