IPMediumSignal 48/100
66.115.73.141
Location
Elmira, Pennsylvania
ASN
AS40545
Empire Access
First Seen
Apr 15, 2026
Last Seen
Apr 23, 2026
Apr 15
First Seen
59d ago
Apr 23
Last Seen
51d ago
7
Reports
source reports
48%
Confidence
medium
2/91
VirusTotal
detections
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
48%
Signal Score
48 / 100
IDS Rule
No
Threat Context
Tags
Network Information
Country
United States
RegionElmira, Pennsylvania
ASNAS40545
OrganizationEmpire Access
Feed Intelligence Summary
7 reports48% confidence
7
Source reports
48%
Confidence score
Category tags
aptexploitation activityimapimap attackindicatornetworknorth americaresearchedsmtpsmtp attackerthreat actortor nodeunited states
Activity Timeline
Apr 23Apr 23
Threat Activity Heatmap
· Peak: 2026-04-23LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
48
SIGNAL
Signal Score
48%
Confidence
7
Reports
First seenApr 15, 2026
Last seenApr 23, 2026
GeolocationUS
CountryUnited States
LocationElmira, Pennsylvania
ASNAS40545
OrgEmpire Access
Coords41.9519, -76.7952
WHOIS
- description
- The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
- raw
- NetRange: 66.115.64.0 - 66.115.79.255 CIDR: 66.115.64.0/20 NetName: ETC-BLK2 NetHandle: NET-66-115-64-0-1 Parent: NET66 (NET-66-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: Empire Access (ETC-84) RegDate: 2008-04-08 Updated: 2024-06-17 Comment: Geofeed https://www.empireaccess.com/geofeed/AS40545-Geofeed-Public.txt Ref: https://rdap.arin.net/registry/ip/66.115.64.0 OrgName: Empire Access OrgId: ETC-84 Address: 34 Main Street City: Prattsburgh StateProv: NY PostalCode: 14873 Country: US RegDate: 2007-12-10 Updated: 2024-11-25 Ref: https://rdap.arin.net/registry/entity/ETC-84 OrgTechHandle: EATS1-ARIN OrgTechName: Empire Access Technical Support OrgTechPhone: +1-800-338-3300 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/EATS1-ARIN OrgNOCHandle: EAN43-ARIN OrgNOCName: Empire Access NOC OrgNOCPhone: +1-570-549-3705 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/EAN43-ARIN OrgAbuseHandle: EAA26-ARIN OrgAbuseName: Empire Access Abuse OrgAbusePhone: +1-570-549-3705 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/EAA26-ARIN RNOCHandle: EAIA1-ARIN RNOCName: Empire Access IP Admin RNOCPhone: +1-800-338-3300 RNOCEmail: [email protected] RNOCRef: https://rdap.arin.net/registry/entity/EAIA1-ARIN RTechHandle: EAIA1-ARIN RTechName: Empire Access IP Admin RTechPhone: +1-800-338-3300 RTechEmail: [email protected] RTechRef: https://rdap.arin.net/registry/entity/EAIA1-ARIN RAbuseHandle: EAIA1-ARIN RAbuseName: Empire Access IP Admin RAbusePhone: +1-800-338-3300 RAbuseEmail: [email protected] RAbuseRef: https://rdap.arin.net/registry/entity/EAIA1-ARIN
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 month ago · Last seen 1 month ago
Appeared in 7 threat reports