IOC Radar
IPMediumSignal 9/100

66.251.128.1

Location
South AfricaSouth Africa
Marseille, Praha, Hlavni mesto
ASN
AS212238
The Cloud Crew (Pty) Ltd
First Seen
Jan 23, 2025
Last Seen
Jun 16, 2026
Jan 23
First Seen
515d ago
Jun 16
Last Seen
6d ago
7
Reports
source reports
9%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
9%
Signal Score
9 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

3 techniques

Network Information

CountryZASouth Africa
RegionMarseille, Praha, Hlavni mesto
ASNAS212238
OrganizationThe Cloud Crew (Pty) Ltd

IP Category

VPN
VPN exit node

Feed Intelligence Summary

7 reports9% confidence
7
Source reports
9%
Confidence score
Category tags
active scanactive scanningafricaczeuropeexploitation activityfrfrancehackingnetworkproxyreconnaissanceresearchedscannersouth africaspamt1595.001t1595.002t1595.003vpnweb app attackweb spamza

Activity Timeline

1 total obs
Jun 16Jun 16

Threat Activity Heatmap

· Peak: 2026-06-16
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
9
SIGNAL
Signal Score
9%
Confidence
7
Reports
First seenJan 23, 2025
Last seenJun 16, 2026
GeolocationZA
CountrySouth Africa
LocationMarseille, Praha, Hlavni mesto
ASNAS212238
OrgThe Cloud Crew (Pty) Ltd
Coords43.2965, 5.3698
VPN

VirusTotal

Not checked

WHOIS

description
protonvpn-vpn search result.
raw
inetnum: 66.251.128.0 - 66.251.191.255 netname: LiquidCloud descr: LiquidCloud country: ZA org: ORG-LA3-AFRINIC admin-c: MC34-AFRINIC admin-c: MS135-AFRINIC tech-c: SB30-AFRINIC tech-c: MS135-AFRINIC status: ALLOCATED PA mnt-by: AFRINIC-HM-MNT mnt-lower: LIQUIDCLOUD-MNT mnt-domains: LIQUIDCLOUD-MNT source: AFRINIC # Filtered parent: 0.0.0.0 - 255.255.255.255 organisation: ORG-LA3-AFRINIC org-name: The Cloud Crew (Pty) Ltd org-type: LIR country: ZA address: Unit 1 & 3 Zhauns bUilding address: 172 Main Road address: Claremont address: 7708 address: Ottery 7806 phone: tel:+27-7833200254 phone: tel:+27-7843403305 admin-c: MC34-AFRINIC admin-c: MS135-AFRINIC tech-c: SB30-AFRINIC tech-c: MS135-AFRINIC mnt-ref: AFRINIC-HM-MNT mnt-ref: LIQUIDCLOUD-MNT mnt-by: AFRINIC-HM-MNT remarks: LiquidCloud source: AFRINIC # Filtered person: Michael Currie nic-hdl: MC34-AFRINIC address: Ottery 7806 address: ZA address: Cape Town address: South Africa phone: tel:+27-7833200254 phone: tel:+27-7843403305 mnt-by: GENERATED-SNBEHHC5JNOKJ1CEUD2ASB0IJ5W3BZZT-MNT source: AFRINIC # Filtered person: Mark Sawyer nic-hdl: MS135-AFRINIC address: 3rd Floor Letterstedt Hse address: Newlands on Main address: 7700 address: Cape Town address: South Africa address: Cape Town 7700 address: South Africa phone: tel:+27-87-975-5063 mnt-by: GENERATED-5SMEJVGV5AU0C429XIUJNWNCCTS1G0W1-MNT source: AFRINIC # Filtered person: Shaun Blaikie address: Ottery 7806 address: ZA phone: tel:+27-7833200254 nic-hdl: SB30-AFRINIC mnt-by: GENERATED-RYS8EY2QUJDLBEFBWDA1BNL2KP0SNNHV-MNT source: AFRINIC # Filtered route: 66.251.128.0/24 origin: AS212238 descr: HRSGlobal mnt-by: LIQUIDCLOUD-MNT source: AFRINIC # Filtered

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 6 days ago
Appeared in 7 threat reports