103.28.224.70 Threat Intelligence - Indonesia | IP Address Lookup

General

IP Address
103.28.224.70
IPv4 Address
Location
🇮🇩 South Tangerang, Indonesia
ID
Network
AS58482
PT. Palapa Media Indonesia
Threat Score
60/100
High Risk
0xrh0d4m1nauthentication-failureBlocklistbrute-forcebruteforceBrute-Forcecowriecredential-dumping
Attack Intelligence
MITRE ATT&CK Techniques
T1021 - Remote Services, T1110.001 - Password Guessing, T1110.003 - Password Spraying, T1110 - Brute Force, T1190 - Exploit Public-Facing Application, T1595 - Active Scanning
Noticed
31 times
Protocols Attacked
mssql portscan
Countries Attacked
China, Germany, Russian Federation, Türkiye, United Kingdom of Great Britain and Northern Ireland, United States of America
Geographic Location
Country
Indonesia
City
South Tangerang
Region
Banten
Coordinates
-6.2876, 106.7220
Network Information
ASN
AS58482
Organization
PT. Palapa Media Indonesia
Network
AS58482 PT. Palapa Media Indonesia
WHOIS Information
inetnum
103.28.224.0 - 103.28.227.255
netname
PALAPAMEDIA-ID
descr
PT. Palapa Media Indonesia
country
ID
admin-c
AR312-AP
tech-c
AR312-AP
status
ALLOCATED PORTABLE
mnt-by
MNT-APJII-ID
mnt-lower
MAINT-ID-PMI
mnt-routes
MAINT-ID-PMI
mnt-irt
IRT-PMI-ID
last-modified
2014-09-09T08:26:12Z
irt
IRT-PMI-ID
address
PT. Palapa Media Indonesia
e-mail
abuse@palapamedia.net.id
abuse-mailbox
abuse@palapamedia.net.id
person
Ahmad Rifai
phone
+62-21-74630525
fax-no
+62-21-74630525
nic-hdl
AR312-AP
route
103.28.224.0/22
origin
AS58482
Attack Logs
DateTarget LocationProtocolLink
2026-07-22 Toronto, Canada MSSQL View Log
2026-07-22 Vultrtokyo MSSQL View Log
2026-07-22 Vultrmelbournetest MSSQL View Log
Disclaimer
This page contains threat intelligence information for the IPv4 address 103.28.224.70 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only, and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.