IOC Radar
IPHighVerifiedSignal 61/100

95.156.190.99

Location
Bosnia and HerzegovinaBosnia and Herzegovina
Mostar, Federacija Bosne i Hercegovine
ASN
AS20875
Htnet
First Seen
May 27, 2025
Last Seen
Jun 7, 2025
May 27
First Seen
391d ago
Jun 7
Last Seen
381d ago
5
Reports
source reports
61%
Confidence
high
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
61%
Signal Score
61 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

29 techniques

Network Information

CountryBABosnia and Herzegovina
RegionMostar, Federacija Bosne i Hercegovine
ASNAS20875
OrganizationHtnet

Feed Intelligence Summary

5 reports61% confidence
5
Source reports
61%
Confidence score
Category tags
abuseactive scanningbosnia and herzegovinabotnetbrute forcebrute force attackcommand and controlcredential accesscredential stuffingdata exfiltrationddosdenial of servicedistributed attacksexploit attemptsftp brute forcehttp brute forceindicatorlateral movementmalicious softwaremalwaremalware propagationmalware scanningnetworknetwork probingnetwork scanningpassword attacksprocess injectionreconnaissanceremote accessremote servicesresearchedsmtp brute forcesql injection attemptsssh attackt1021t1021.001t1046t1055t1059t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1187t1190t1199t1210t1486t1496t1499.002t1499.003t1563t1565t1588t1595t1595.001t1595.002t1595.003

Activity Timeline

1 total obs
Jun 7Jun 7

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
61
SIGNAL
Signal Score
61%
Confidence
5
Reports
First seenMay 27, 2025
Last seenJun 7, 2025
Verified IOC
GeolocationBA
CountryBosnia and Herzegovina
LocationMostar, Federacija Bosne i Hercegovine
ASNAS20875
OrgHtnet
Coords43.1289, 17.8667

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 1 year ago
Appeared in 5 threat reports