IPMediumSignal 100/100
98.127.21.237
Location
Grand Junction, Colorado
ASN
AS33588
Spectrum
First Seen
Dec 28, 2024
Last Seen
Nov 20, 2025
Found in 16 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
United States
RegionGrand Junction, Colorado
ASNAS33588
OrganizationSpectrum
Feed Intelligence Summary
16 reports99% confidence
16
Source reports
99%
Confidence score
Category tags
abuseaccess controlactive scanningattackaustraliaauthenticationauthentication attackauto-generated securityautomated attackbotnetbrute forcebrute force attackbrute force attemptcommand and controlcredential accesscredential harvestingcredential stuffingctadata exfiltrationdecoy systemdistributed attacksindicatorinfrastructure acquisitionreconnaissancemalicious activitymalicious softwaremalwaremanualnetworknetwork intrusionnetwork scanningnetwork securitynorth americaoceaniapassword attacksphishing attackprocess injectionreconnaissanceremote accessremote servicesresearchedscannersecurity operationssecurity policysocial engineeringssh attackt1021.004t1055t1071.001t1078t1078.002t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.002t1499.003t1555t1555.003t1565t1566.001t1566.002t1566.003t1587.001t1589t1589.002t1590.001t1595.001t1595.002t1595.003telecommunicationsthreat actorthreat intelligencethreat preventionunited statesus
Activity Timeline
Nov 20Nov 20
Threat Activity Heatmap
· Peak: 2025-11-20LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
16
Reports
First seenDec 28, 2024
Last seenNov 20, 2025
GeolocationUS
CountryUnited States
LocationGrand Junction, Colorado
ASNAS33588
OrgSpectrum
Coords39.0157, -108.6129
VirusTotal
Not checked
WHOIS
- description
- Host bruteforcing SSH
- references
- https://redpiranha.net
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 6 months ago
Appeared in 16 threat reports