IOC Radar
IPMediumSignal 48/100

154.227.128.252

Location
UgandaUganda
Kampala, Western Region
ASN
AS37075
Mobile Data Service 2G
First Seen
Apr 15, 2026
Last Seen
Apr 23, 2026
Apr 15
First Seen
59d ago
Apr 23
Last Seen
51d ago
7
Reports
source reports
48%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
48%
Signal Score
48 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryUGUganda
RegionKampala, Western Region
ASNAS37075
OrganizationMobile Data Service 2G

Feed Intelligence Summary

7 reports48% confidence
7
Source reports
48%
Confidence score
Category tags
aptexploitation activityimapimap attackindicatornetworkresearchedsmtpsmtp attackerthreat actortor nodeuganda

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
48
SIGNAL
Signal Score
48%
Confidence
7
Reports
First seenApr 15, 2026
Last seenApr 23, 2026
GeolocationUG
CountryUganda
LocationKampala, Western Region
ASNAS37075
OrgMobile Data Service 2G
Coords1.6744, 31.7150

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
inetnum: 154.224.0.0 - 154.227.255.255 netname: Mobile_Data_Service descr: Airtel-Uganda country: UG admin-c: NA74-AFRINIC tech-c: NA74-AFRINIC status: ASSIGNED PA remarks: Airtel_UG_Mobile subs mnt-by: CELTELUG-MNT source: AFRINIC # Filtered parent: 154.224.0.0 - 154.231.255.255 person: Network Admin nic-hdl: NA74-AFRINIC address: Airtel Towers, Plot 16A , Clement Hill Road, address: Kampala address: Uganda address: Kampala address: Uganda phone: tel:+256-200-208880 mnt-by: GENERATED-PFLOSJBGBQKNCEI4NUNHXAEZYHQHVZ0X-MNT source: AFRINIC # Filtered route: 154.227.128.0/22 descr: Assigned for Enterprise customers origin: AS37075 mnt-by: CELTELUG-MNT source: AFRINIC # Filtered

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 1 month ago
Appeared in 7 threat reports