IPMediumSignal 25/100
95.235.142.175
Location
Pomigliano d'Arco, Campania
ASN
AS3269
INTERBUSINESS
First Seen
Mar 12, 2025
Last Seen
Apr 7, 2026
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
25%
Signal Score
25 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Italy
RegionPomigliano d'Arco, Campania
ASNAS3269
OrganizationINTERBUSINESS
Feed Intelligence Summary
8 reports25% confidence
8
Source reports
25%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningbad reputationbotnetbotnet activitybrute forcebrute force attemptcommand and controlcommunication protocolcredential accesscredential stuffingdata exfiltrationdata store exposureddosddos attacksdecoy systemdistributed attackseuropeexploitation activityidentity & access exploitationindicatorinjection activityinternet of thingsintrusion detectioniociot botnetiot securityiot/ics attackititalymalicious network activitymalicious softwaremalwaremirai botnetnetworknetwork attacksnetwork intrusionnetwork probingnetwork scanningnetwork securitynetwork service scanningprocess injectionprotocol exploitationreconnaissanceresearchedscanscannersecurity policyservice scant1021.002t1040t1046t1055t1056.001t1059.001t1071.001t1078t1110t1110.002t1133t1190t1486t1496t1499.001t1499.002t1499.003t1565t1595t1595.001t1595.002t1595.003tcp protocoltelecommunicationstelnet threatthreat intelligencethreat prevention
Activity Timeline
Apr 7Apr 7
Threat Activity Heatmap
· Peak: 2026-04-07LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
25
SIGNAL
Signal Score
25%
Confidence
8
Reports
First seenMar 12, 2025
Last seenApr 7, 2026
GeolocationIT
CountryItaly
LocationPomigliano d'Arco, Campania
ASNAS3269
OrgINTERBUSINESS
Coords40.8855, 14.5377
VirusTotal
Not checked
WHOIS
- description
- Scans hitting the server at TCP port 23 Telnet. Same IP should not appear more than once in 96 hours in our lists S3#.
- raw
- inetnum: 95.224.0.0 - 95.239.255.255 netname: ALICE-SMART descr: Telecom Italia S.p.A. descr: Alice - Smart descr: Services country: IT admin-c: BS104-RIPE tech-c: BS104-RIPE status: ASSIGNED PA remarks: ************************************************ remarks: Pay attention remarks: Any communication sent to email different remarks: from the following will be ignored! remarks: Any abuse reports, please send them to remarks: [email protected] remarks: ************************************************ mnt-by: TIWS-MNT created: 2010-06-03T09:27:27Z last-modified: 2019-10-01T12:25:43Z source: RIPE # Filtered person: BBBEASYIP STAFF address: Via Oriolo Romano 240 address: 00189 Roma address: Italy phone: +39 06 36881 nic-hdl: BS104-RIPE mnt-by: TIWS-MNT created: 2001-10-19T12:23:31Z last-modified: 2019-01-15T13:58:43Z source: RIPE # Filtered route: 95.234.0.0/15 descr: INTERBUSINESS origin: AS3269 mnt-by: TIWS-MNT mnt-routes: INTERB-MNT created: 2009-04-07T12:49:29Z last-modified: 2009-04-07T12:49:29Z source: RIPE # Filtered
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 2 months ago
Appeared in 8 threat reports