196.251.121.90
Classification: Malicious
196.251.121.90 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-02. Network: AS205759 Net Gate Telecom S.R.L..
Current activity
- Command & Control server β Used by cybercriminals to control victim computers.
- Malware distribution β This indicator is distributing malware.
- VPN node β Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Tofsee | Maltiverse Threat Observatory | 2026-06-22 10:40:07 | 2026-09-02 20:40:24 | botnet country_code:co industry:education-and-nonprofits malicious-activity | |
| Generic Malware | Maltiverse Threat Observatory | 2026-06-22 08:10:05 | 2026-07-22 14:15:13 | country_code:co industry:education-and-nonprofits malicious-activity malware | |
| VPN | IPWhois.io | 2026-06-22 07:25:07 | 2026-07-22 13:50:06 | anonymization vpn | |
| Tofsee | ThreatFox Abuse.ch | 2026-06-22 07:00:13 | 2026-07-11 06:25:04 | malicious-activity |
Tags
gheg port:431 port:422 tofsee port:430 port:419 port:427 port:429 port:425 port:418 port:424 port:421 port:428 port:420 port:423 port:417 port:416Whois information
- AS name
- AS205759 Net Gate Telecom S.R.L.
- Registrant
- Net Gate Telecom S.R.L.
- City
- English River
- Postal code
- 06420
- Country
- SC β Seychelles πΈπ¨
- First indexed
- 2026-06-22 07:25:05
- Last updated
- 2026-09-02 21:14:14