IPMediumSignal 84/100
92.63.197.94
Location
Amsterdam, North Holland
ASN
AS211736
Korotkij Denis Aleksandrovich
First Seen
May 12, 2021
Last Seen
Dec 20, 2025
Found in 4 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
84%
Signal Score
84 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
The Netherlands
RegionAmsterdam, North Holland
ASNAS211736
OrganizationKorotkij Denis Aleksandrovich
Feed Intelligence Summary
4 reports84% confidence
4
Source reports
84%
Confidence score
Category tags
active scanningapplication layer protocolbrute forcebrute force attackc2 communicationcommunication protocolcredential accesscredential stuffingdata encryptiondata exfiltrationdatabase securityddosdecoy systemdenial of serviceexploit probingftpftp brute forcehttp brute forcehttp probehttp scannerhttpsimapindicatorinjection attackslateral movementmalware distributionmalware propagation attemptnetworknetwork attacksnetwork intrusion detectionnetwork probingnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynetwork service scanningpassword attackpassword attackspossible botnet activityprotocol exploitationreconnaissanceremote accessremote servicesresearchedscanning activitysmb brute forcesmtpssh attacksyn scant1016t1021t1021.001t1021.002t1021.003t1021.004t1021.006t1040t1046t1047t1048t1048.003t1053t1053.005t1055t1056t1056.001t1056.004t1057t1059t1059.001t1059.003t1059.004t1068t1071t1071.001t1071.002t1071.004t1071.005t1076t1077t1078t1078.001t1078.002t1078.003t1078.004t1082t1083t1087t1090t1090.001t1090.002t1090.003t1095t1102t1102.001t1105t1110t1110.001t1110.002t1110.003t1110.004t1112t1113t1129t1132t1132.001t1132.002t1133t1134t1136t1136.001t1136.002t1137t1137.001t1137.002t1137.003t1137.004t1137.005t1137.006t1189t1190t1195t1195.001t1195.002t1195.003t1197t1199t1202t1203t1204t1204.001t1204.002t1205t1205.001t1207t1210t1211t1213t1213.001t1213.002t1213.003t1213.004t1214t1216t1216.001t1217t1218t1218.001t1218.002t1218.003t1218.004t1218.005t1219t1220t1486t1499.002t1499.003t1563t1566t1566.001t1566.002t1566.003t1566.004t1567t1567.001t1567.002t1567.003t1568t1569t1569.001t1569.002t1570t1571t1572t1573t1573.001t1573.002t1574t1574.001t1574.002t1574.008t1578t1583t1583.001t1583.002t1583.003t1583.004t1583.005t1583.006t1584t1584.001t1584.002t1585t1586t1587t1587.001t1587.002t1587.003t1588t1588.001t1588.002t1588.003t1588.004t1589t1590t1590.001t1590.002t1590.003t1590.004t1590.005t1590.006t1591t1591.001t1591.002t1592t1592.001t1592.002t1592.003t1593t1594t1595t1595.001t1595.002t1595.003t1596t1598t1599t1600t1601t1602tcp protocoltcp scanningtelnet threatthreat intelligencetsecunauthorized accessunauthorized access attemptunauthorized access attemptsunauthorized login attemptvalid accountsweb traffic
Activity Timeline
Dec 20Dec 20
Threat Activity Heatmap
· Peak: 2025-12-20LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
84
SIGNAL
Signal Score
84%
Confidence
4
Reports
First seenMay 12, 2021
Last seenDec 20, 2025
GeolocationNL
CountryThe Netherlands
LocationAmsterdam, North Holland
ASNAS211736
OrgKorotkij Denis Aleksandrovich
Coords52.3676, 4.9041
VirusTotal
Not checked
WHOIS
- description
- HoneyNet Event: 92.63.197.94 connected: 4 times over ports: 47664 Tags: P0f,47664
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 5 years ago · Last seen 6 months ago
Appeared in 4 threat reports