IOC Radar
IPMediumSignal 42/100

212.102.57.209

Location
GermanyGermany
Frankfurt am Main, HE
ASN
AS212238
DataCamp Limited
First Seen
Sep 16, 2021
Last Seen
Apr 24, 2026
Sep 16
First Seen
1731d ago
Apr 24
Last Seen
49d ago
22
Reports
source reports
42%
Confidence
medium
Found in 22 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
42%
Signal Score
42 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

38 techniques

Network Information

CountryDEGermany
RegionFrankfurt am Main, HE
ASNAS212238
OrganizationDataCamp Limited

IP Category

VPN
VPN exit node

Feed Intelligence Summary

22 reports42% confidence
22
Source reports
42%
Confidence score
Category tags
abuseactive scanactive scanningaerospace & defenseattackautomotive manufacturingbad reputationbotnetbotnet activitybrute forcebrute force attackcivil servicescommand and controlcommunication protocolcredential accesscredential harvestingcredential stuffingcyber securitydata exfiltrationdata store exposureddosdedefensedefense contractingdefense logisticsdefense systemsdefense technologydenial of servicedistributed attackselectronics manufacturingeuropeexploitation activityfinlandfranceftpftp brute forcegermanygovernment technologyhoneynet connecthttp brute forcehttp scannerhttpsidentity & access exploitationindustrial automationindustrial iotindustrial productioninformation technologyinjection activityiociot securityit infrastructurelateral movementlogin attemptmalicious activitymalicious softwaremalwaremanufacturing technologymilitary operationsnational securitynetworknetwork attacksnetwork enumerationnetwork intrusionnetwork intrusion attemptnetwork probingnetwork protocolnetwork scanningnetwork securitynextraynorth americapassword attackpassword attacksphishingphishing attackpolandprocess injectionprocess manufacturingprotocol exploitationproxypublic administrationpublic infrastructurepublic policyquality controlreconnaissanceregulatory agenciesremote accessremote servicesresearchedscannerscanning activitysecurity operationssmb brute forcesmtpsmtp brute forcesocial engineeringsoftware developmentspamssh attacksupply chain attacksupply chain managementt1021t1021.001t1021.002t1021.003t1021.004t1021.005t1040t1046t1055t1059t1059.001t1059.003t1059.004t1068t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1187t1190t1486t1496t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1592t1595t1595.001t1595.002t1595.003tcp protocoltcp scantelnet threatthreat actorthreat intelligencetor nodeudp scanunauthorized access attemptunited statesvpnweb traffic

Activity Timeline

1 total obs
Apr 24Apr 24

Threat Activity Heatmap

· Peak: 2026-04-24
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
42
SIGNAL
Signal Score
42%
Confidence
22
Reports
First seenSep 16, 2021
Last seenApr 24, 2026
GeolocationDE
CountryGermany
LocationFrankfurt am Main, HE
ASNAS212238
OrgDataCamp Limited
Coords50.1188, 8.6843
VPN

VirusTotal

Not checked

WHOIS

description
CC=DE ASN=AS212238 datacamp limited
raw
inetnum: 212.102.56.0 - 212.102.57.255 netname: CDNEXT-FRA country: DE admin-c: DLTS1-RIPE tech-c: DLTS1-RIPE status: ASSIGNED PA mnt-by: DATACAMP-MNT created: 2020-03-16T12:39:56Z last-modified: 2022-03-08T13:36:58Z source: RIPE role: Datacamp Ltd. technical staff address: DataCamp Limited address: Coldbath Square 9 address: London address: United Kingdom nic-hdl: DLTS1-RIPE abuse-mailbox: [email protected] mnt-by: DATACAMP-MNT tech-c: JP4750-RIPE admin-c: JP4750-RIPE created: 2014-06-23T09:09:30Z last-modified: 2025-01-27T12:54:11Z source: RIPE # Filtered route: 212.102.57.0/24 origin: AS212238 descr: CDNEXT FRA mnt-by: DATACAMP-MNT created: 2021-12-15T11:06:52Z last-modified: 2022-03-08T13:37:01Z source: RIPE

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 1 month ago
Appeared in 22 threat reports