IOC Radar
IPMediumSignal 68/100

102.219.170.71

Location
South AfricaSouth Africa
Cape Town, Western Cape
ASN
AS328480
Too Much Wifi
First Seen
Sep 25, 2025
Last Seen
May 27, 2026
Sep 25
First Seen
262d ago
May 27
Last Seen
18d ago
12
Reports
source reports
68%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
68%
Signal Score
68 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

13 techniques

Network Information

CountryZASouth Africa
RegionCape Town, Western Cape
ASNAS328480
OrganizationToo Much Wifi

IP Category

Proxy
Proxy server

Feed Intelligence Summary

12 reports68% confidence
12
Source reports
68%
Confidence score
Category tags
abuseactive scanactive scanningafricabad reputationbad web botbotnet activitybrute forcebrute force attackbrute-forcecredential accesscredential harvestingcredential stuffingddosddos attackdenial of serviceexploitation activityexploited hosthackingidentity & access exploitationimapimap attackindicatoriot securityiot targetednetworkpassword attacksphishingphishing attackproxyransomwarereconnaissanceresearchedscannersmtpsmtp attackersocial engineeringsocradar honeypotsouth africaspamsshssh attackt1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1566.001t1566.002t1566.003t1595.001t1595.002t1595.003web app attackweb application attackweb exploitationweb spamza

Activity Timeline

1 total obs
May 27May 27

Threat Activity Heatmap

· Peak: 2026-05-27
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
68
SIGNAL
Signal Score
68%
Confidence
12
Reports
First seenSep 25, 2025
Last seenMay 27, 2026
GeolocationZA
CountrySouth Africa
LocationCape Town, Western Cape
ASNAS328480
OrgToo Much Wifi
Coords-34.1934, 18.4359
Proxy

VirusTotal

Not checked

WHOIS

raw
inetnum: 102.219.168.0 - 102.219.171.255 netname: TooMuchWifi descr: Too Much Wifi country: ZA org: ORG-TMW1-AFRINIC admin-c: TB38-AFRINIC admin-c: DK52-AFRINIC admin-c: DG25-AFRINIC admin-c: DN52-AFRINIC tech-c: DK52-AFRINIC tech-c: DG25-AFRINIC tech-c: DN52-AFRINIC status: ALLOCATED PA mnt-by: AFRINIC-HM-MNT mnt-lower: TMW1-MNT mnt-domains: TMW1-MNT source: AFRINIC # Filtered parent: 102.0.0.0 - 102.255.255.255 organisation: ORG-TMW1-AFRINIC org-name: Too Much Wifi org-type: LIR country: ZA address: 16 Milner Road, address: Metro Industrial  address: Cape Town, 7405 phone: tel:+27-82-450-6355 phone: tel:+27-60-016-9434 phone: tel:+27-82-626-1888 admin-c: DK52-AFRINIC admin-c: DG25-AFRINIC admin-c: TB38-AFRINIC admin-c: DN52-AFRINIC tech-c: DK52-AFRINIC tech-c: DG25-AFRINIC tech-c: DN52-AFRINIC mnt-ref: AFRINIC-HM-MNT mnt-ref: TMW1-MNT mnt-by: AFRINIC-HM-MNT source: AFRINIC # Filtered person: Darren Gorton nic-hdl: DG25-AFRINIC address: 16 Milner Street address: Paarden Eiland address: Cape Town address: Other phone: tel:+27-60-016-9434 mnt-by: GENERATED-A1XTL4AM6KWYXWEIKCMYOOGUWQ93KNBX-MNT source: AFRINIC # Filtered person: Darshan Kowlaser nic-hdl: DK52-AFRINIC address: 16 Milner St address: Paarden Eiland address: Cape Town 7405 address: South Africa phone: tel:+27-82-626-1888 mnt-by: GENERATED-6LABUK2A8S52QXPCYICNJGOY0MFRY21U-MNT source: AFRINIC # Filtered person: Diren Naidoo address: 16 Milner St address: Cape Town 8001 address: South Africa phone: tel:+27-82-450-6355 nic-hdl: DN52-AFRINIC source: AFRINIC # Filtered mnt-by: GENERATED-Q0IXK1V2EN7GOIKYHYZBGUMRWZYCIAXY-MNT person: Tauriq Brown address: 16 Milner Street address: Cape Town 8100 address: South Africa phone: tel:+27-73-981-9392 nic-hdl: TB38-AFRINIC source: AFRINIC # Filtered mnt-by: GENERATED-H4TLUBYTBCLVCX7FCOQVWB4BZRN2NHXT-MNT route: 102.219.170.0/24 origin: AS328480 descr: 170.0 mnt-by: TMW1-MNT source: AFRINIC # Filtered

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 8 months ago · Last seen 18 days ago
Appeared in 12 threat reports