IOC Radar
IPMediumSignal 73/100

66.163.115.210

Location
United StatesUnited States
Detroit, Michigan
ASN
AS63023
GTHost
First Seen
Apr 12, 2026
Last Seen
Jun 8, 2026
Apr 12
First Seen
68d ago
Jun 8
Last Seen
11d ago
14
Reports
source reports
73%
Confidence
medium
Found in 14 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
73%
Signal Score
73 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

10 techniques

Network Information

CountryUSUnited States
RegionDetroit, Michigan
ASNAS63023
OrganizationGTHost

Feed Intelligence Summary

14 reports73% confidence
14
Source reports
73%
Confidence score
Category tags
abuseactive scanactive scanningapacheapache attackeraptbad reputationbad web botblocklistbotnet activitybrute forcebrute force attackbrute-forcebruteforcecredential accesscredential stuffingddosddos attackdenial of serviceexploitation activityexploited hosthackingidentity & access exploitationinjection activitynetworknorth americapassword attacksproxyreconnaissanceresearchedscannerspamsql injectionssht1110.001t1110.002t1110.003t1110.004t1190t1203t1499.001t1595.001t1595.002t1595.003targeting databasethreat actortor nodeunited statesusweb app attackweb application attackweb exploitationweb spam

Activity Timeline

1 total obs
Jun 8Jun 8

Threat Activity Heatmap

· Peak: 2026-06-08
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
73
SIGNAL
Signal Score
73%
Confidence
14
Reports
First seenApr 12, 2026
Last seenJun 8, 2026
GeolocationUS
CountryUnited States
LocationDetroit, Michigan
ASNAS63023
OrgGTHost
Coords42.3314, -83.0458

VirusTotal

Not checked

WHOIS

raw
NetRange: 66.163.112.0 - 66.163.127.255 CIDR: 66.163.112.0/20 NetName: GC-852 NetHandle: NET-66-163-112-0-1 Parent: NET66 (NET-66-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: GTHost (GC-852) RegDate: 2025-12-04 Updated: 2025-12-04 Comment: Geofeed: https://lg-tor.gthost.com/geo-feed.csv Ref: https://rdap.arin.net/registry/ip/66.163.112.0 OrgName: GTHost OrgId: GC-852 Address: 427 S La Salle St, Suite 405 City: Chicago StateProv: IL PostalCode: 60605 Country: US RegDate: 2017-12-22 Updated: 2025-12-24 Ref: https://rdap.arin.net/registry/entity/GC-852 OrgNOCHandle: ADMIN6532-ARIN OrgNOCName: Admin OrgNOCPhone: +1-855-550-1010 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/ADMIN6532-ARIN OrgTechHandle: ADMIN6532-ARIN OrgTechName: Admin OrgTechPhone: +1-855-550-1010 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/ADMIN6532-ARIN OrgAbuseHandle: ABUSE9420-ARIN OrgAbuseName: Abuse OrgAbusePhone: +1-855-550-1010 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE9420-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 11 days ago
Appeared in 14 threat reports