156.225.72.66 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 156.225.72.66 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 7/100

Host and Network Information

  • Country: United States
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: a4jjmqy3.icu ltk3d2ys.icu q8f5ctoh.icu ctbx72f4.icu gvr6okhq.icu 6sib2702.icu ncvhcr4p.icu un9zx8ux.icu wpcs46cq.icu q33f55jt.icu 7oxcgb1q.icu 8ied49a6.icu jsv1zwdn.icu bs6b906i.icu 2al3tnr1.icu ig6wfec9.icu fv5osapj.icu osxg9i4k.icu jo1gazmz.icu djt9y8lq.icu xtv5k3cj.icu m89if2wp.icu fk54zk0k.icu x6thwvge.icu uol21k86.icu 1cupzbf9.icu t158qd9f.icu rqh5r21k.icu ks5jbjff.icu 8uuf6r6i.icu awfle8yl.icu l4ov203h.icu www.vcqrxrpy.icu vcqrxrpy.icu www.swcprhkj.icu swcprhkj.icu www.rh51eqyx.icu rh51eqyx.icu lh82008.vip dw26422.vip lhc00282.vip

Malware Detected on Host

Count: 2 417bca6c3e762045edf074fadd9c207baa1284381dad347279a953e863490f91 bcb8de0138ac75fe8f3995db36567fda5f0161a4409f91bfd5d7425e49a8ac26

Open Ports Detected

2052 2053 2082 2083 2086 2087 443 80 8080 8443 8880

Map

Whois Information

  • NetRange: 156.225.0.0 - 156.225.255.255
  • CIDR: 156.225.0.0/16
  • NetName: AFRINIC-ERX-156-225-0-0
  • NetHandle: NET-156-225-0-0-1
  • Parent: NET156 (NET-156-0-0-0-0)
  • NetType: Transferred to AfriNIC
  • OriginAS:
  • Organization: African Network Information Center (AFRINIC)
  • RegDate: 2010-11-03
  • Updated: 2010-11-17
  • Comment: This IP address range is under AFRINIC responsibility.
  • Comment: Please see http://www.afrinic.net/ for further details,
  • Ref: https://rdap.arin.net/registry/ip/156.225.0.0
  • OrgName: African Network Information Center
  • OrgId: AFRINIC
  • Address: Level 11ABC
  • Address: Raffles Tower
  • Address: Lot 19, Cybercity
  • City: Ebene
  • StateProv:
  • PostalCode:
  • Country: MU
  • RegDate: 2004-05-17
  • Updated: 2015-05-04
  • Comment: AfriNIC - http://www.afrinic.net
  • Comment: The African & Indian Ocean Internet Registry
  • Ref: https://rdap.arin.net/registry/entity/AFRINIC
  • OrgAbuseHandle: GENER11-ARIN
  • OrgAbuseName: Generic POC
  • OrgAbusePhone: +230 4666616
  • OrgAbuseEmail: abusepoc@afrinic.net
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • OrgTechHandle: GENER11-ARIN
  • OrgTechName: Generic POC
  • OrgTechPhone: +230 4666616
  • OrgTechEmail: abusepoc@afrinic.net
  • OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
  • inetnum: 156.225.72.0 - 156.225.72.255
  • netname: GS_TECHNOLOGIES_LIMITED
  • descr: GS TECHNOLOGIES LIMITED
  • country: US
  • admin-c: CIS1-AFRINIC
  • tech-c: CIS1-AFRINIC
  • status: ASSIGNED PA
  • mnt-by: CIL1-MNT
  • mnt-by: LARUS-SERVICE-MNT
  • parent: 156.224.0.0 - 156.255.255.255
  • person: Cloud Innovation Support
  • address: Ebene
  • address: MU
  • address: Mahe
  • address: Seychelles
  • phone: tel:+248-4-610-795
  • nic-hdl: CIS1-AFRINIC
  • abuse-mailbox: abuse@cloudinnovation.org
  • mnt-by: CIL1-MNT
  • route: 156.225.72.0/24
  • descr: GS TECHNOLOGIES LIMITED
  • origin: AS209242
  • mnt-by: LARUS-SERVICE-MNT

Links to attack logs

anonymous-proxy-ip-list-2025-06-23 anonymous-proxy-ip-list-2025-06-22 anonymous-proxy-ip-list-2025-06-24

Share on: