66.212.129.2 Threat Intelligence and Host Information

General

IP Address
66.212.129.2
IPv4 Address
Location
🇺🇸 Bakerstown, United States
US
Network
AS13333
CCI-PA-AS-1
Threat Score
55/100
High Risk
01.10.202520252026-02attackauto-generatedsecurityAutomatedblacklist
Attack Intelligence
MITRE ATT&CK Techniques
T1041 - Exfiltration Over C2 Channel, T1059.001 - PowerShell, T1072 - Software Deployment Tools, T1110.001 - Password Guessing, T1110.002 - Password Cracking, T1110.003 - Password Spraying, T1110.004 - Credential Stuffing, T1590.004 - Network Topology, T1590.005 - IP Addresses, T1595.001 - Scanning IP Blocks, T1595.002 - Vulnerability Scanning
Open Ports Detected
23
Geographic Location
Country
United States
City
Bakerstown
Region
Pennsylvania
Coordinates
40.6458, -79.9273
Network Information
ASN
AS13333
Organization
CCI-PA-AS-1
Network
AS13333 CCI-PA-AS-1
WHOIS Information
NetRange
66.212.128.0 - 66.212.159.255
CIDR
66.212.128.0/19
NetName
PINNATECH-2
NetHandle
NET-66-212-128-0-1
Parent
NET66 (NET-66-0-0-0-0)
NetType
Direct Allocation
OriginAS
Organization
Fidium (CONSO-8)
RegDate
2004-06-29
Updated
2025-10-29
Ref
https://rdap.arin.net/registry/entity/CONSO-8
OrgName
Fidium
OrgId
CONSO-8
Address
350 S Loop 336 W
City
Conroe
StateProv
TX
PostalCode
77304
Country
US
Comment
Please report all abuse to abusetx@consolidated.net. DO NOT send abuse reports to dmartin@consolidated.net, they will be deleted.
OrgTechHandle
JENKI512-ARIN
OrgTechName
Jenkins, Johnathan
OrgTechPhone
+1-603-707-8630
OrgTechEmail
Johnathan.Jenkins@Consolidated.com
OrgTechRef
https://rdap.arin.net/registry/entity/JENKI512-ARIN
Attack Logs
Date Target Location Protocol Link
2026-02-19 Vultrtokyo TELNET View Log

  • Country: United States
  • Network:
  • Noticed: 35 times
  • Protocols Attacked: portscan telnet
  • Countries Attacked: Finland, France, Germany, Indonesia, Poland, United States of America

Malware Detected on Host

Count: 1 4224f162d9d11f87dd6b91e500781d49da3352776bcad011b4404ebdad948838

Disclaimer
This page contains threat intelligence information for the IPv4 address 66.212.129.2 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.