IOC Radar
IPMediumSignal 61/100

166.186.196.196

Location
United StatesUnited States
New York, New York
ASN
AS20057
AT&T Enterprises, LLC
First Seen
Apr 11, 2026
Last Seen
May 31, 2026
Apr 11
First Seen
64d ago
May 31
Last Seen
14d ago
10
Reports
source reports
61%
Confidence
medium
Found in 10 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
61%
Signal Score
61 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

7 techniques

Network Information

CountryUSUnited States
RegionNew York, New York
ASNAS20057
OrganizationAT&T Enterprises, LLC

Feed Intelligence Summary

10 reports61% confidence
10
Source reports
61%
Confidence score
Category tags
abuseactive scanactive scanningbad reputationbad web botblocklistbotnet activitybrute forcebrute force attackbrute-forcecredential accesscredential stuffingcredential-harvestingenv-huntingexploitation activityidentity & access exploitationindicatornetworknginxnorth americapassword attacksreconnaissanceresearchedscannerself-signedsshssh attackt1110.001t1110.002t1110.003t1110.004t1595.001t1595.002t1595.003united statesusweb app attack

Activity Timeline

1 total obs
May 31May 31

Threat Activity Heatmap

· Peak: 2026-05-31
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
61
SIGNAL
Signal Score
61%
Confidence
10
Reports
First seenApr 11, 2026
Last seenMay 31, 2026
GeolocationUS
CountryUnited States
LocationNew York, New York
ASNAS20057
OrgAT&T Enterprises, LLC
Coords40.7128, -74.0060

VirusTotal

Not checked

WHOIS

description
Banned by Fail2Ban [sshd]
raw
NetRange: 166.183.0.0 - 166.209.255.255 CIDR: 166.192.0.0/12, 166.208.0.0/15, 166.184.0.0/13, 166.183.0.0/16 NetName: AEL-360 NetHandle: NET-166-183-0-0-1 Parent: NET166 (NET-166-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: AT&T Enterprises, LLC (AEL-360) RegDate: 2025-04-01 Updated: 2025-04-01 Ref: https://rdap.arin.net/registry/ip/166.183.0.0 OrgName: AT&T Enterprises, LLC OrgId: AEL-360 Address: 208 S. Akard St. City: Dallas StateProv: TX PostalCode: 75202 Country: US RegDate: 2024-11-22 Updated: 2025-10-29 Ref: https://rdap.arin.net/registry/entity/AEL-360 OrgRoutingHandle: ROUTI59-ARIN OrgRoutingName: Routing POC OrgRoutingPhone: +1-999-999-9999 OrgRoutingEmail: [email protected] OrgRoutingRef: https://rdap.arin.net/registry/entity/ROUTI59-ARIN OrgTechHandle: ZS44-ARIN OrgTechName: IPAdmin-ATT Internet Services OrgTechPhone: +1-888-510-5545 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/ZS44-ARIN OrgAbuseHandle: ABUSE7-ARIN OrgAbuseName: abuse OrgAbusePhone: +1-919-319-8167 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE7-ARIN OrgTechHandle: ICC-ARIN OrgTechName: IP Team OrgTechPhone: +1-888-876-2382 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/ICC-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 14 days ago
Appeared in 10 threat reports