IPMediumSignal 70/100
92.112.71.83
Location
Istanbul, Istanbul
ASN
AS203771
Private Customer
First Seen
Apr 8, 2026
Last Seen
Apr 29, 2026
Found in 6 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
70%
Signal Score
70 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Turkey
RegionIstanbul, Istanbul
ASNAS203771
OrganizationPrivate Customer
Feed Intelligence Summary
6 reports70% confidence
6
Source reports
70%
Confidence score
Category tags
abuseaccount compromiseactive scanactive scanningbad reputationbotnetbotnet activitybrute forcebrute force attackcloud infrastructurecloud infrastructure attackcloud servicescowrie honeypotcredential accesscredential stuffingddosddos attackdecoy systemdigital oceandionaea honeypoteurope/asiaexploitation activityfatthackinghoneytrap honeypotidentity & access exploitationindicatormailoney honeypotmalicious activitymalwaremalware behaviourmalware capturenetworknetwork scanningnorth americap0fpassword attacksphishingphishing attackphishing trapportscanreconnaissanceresearchedresource hijackingscannerscannerssensor-taggedsentrypeer botnetservice scanssh attackssh monitoringt1078t1110.001t1110.002t1110.003t1110.004t1496t1499.001t1595.001t1595.002t1595.003tannerthreat actorthreat detectionthreat intelligencetor nodetpottrturkeyunited statesvoip attackvultr
Activity Timeline
Apr 29Apr 29
Threat Activity Heatmap
· Peak: 2026-04-29LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
70
SIGNAL
Signal Score
70%
Confidence
6
Reports
First seenApr 8, 2026
Last seenApr 29, 2026
GeolocationTR
CountryTurkey
LocationIstanbul, Istanbul
ASNAS203771
OrgPrivate Customer
Coords41.0082, 28.9784
VirusTotal
Not checked
WHOIS
- description
- IPv4 hosts detected port scanning Vultr Melbourne (Australia) honeypot
- raw
- inetnum: 92.112.71.0 - 92.112.71.255 netname: NET-92-112-71-0-24 country: TR geofeed: https://geofeed.ipxo.com/geofeed.txt org: ORG-PC1042-RIPE admin-c: PC20440-RIPE tech-c: PC20440-RIPE abuse-c: PC20440-RIPE status: ASSIGNED PA remarks: End User Organization mnt-by: netutils-mnt created: 2025-11-18T18:01:51Z last-modified: 2026-02-15T13:13:18Z source: RIPE organisation: ORG-PC1042-RIPE org-name: Private Customer org-type: OTHER remarks: End User Organization address: Private Residence country: ME abuse-c: PC20440-RIPE mnt-ref: netutils-mnt mnt-by: netutils-mnt created: 2025-06-21T18:46:00Z last-modified: 2025-06-21T18:46:00Z source: RIPE # Filtered role: Private Customer address: Private Residence nic-hdl: PC20440-RIPE remarks: End User Organization abuse-mailbox: [email protected] mnt-by: netutils-mnt created: 2025-06-21T18:46:00Z last-modified: 2025-06-21T18:46:00Z source: RIPE # Filtered route: 92.112.71.0/24 origin: AS203771 mnt-by: netutils-mnt created: 2025-11-18T18:01:49Z last-modified: 2025-11-18T18:01:49Z source: RIPE route: 92.112.71.0/24 origin: AS205733 mnt-by: netutils-mnt created: 2025-06-21T18:46:40Z last-modified: 2025-06-21T18:46:40Z source: RIPE route: 92.112.71.0/24 origin: AS209604 mnt-by: netutils-mnt created: 2025-07-28T22:22:46Z last-modified: 2025-07-28T22:22:46Z source: RIPE
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 1 month ago
Appeared in 6 threat reports