103.163.220.5

Classification: Malicious

103.163.220.5 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-14. Network: AS206092 XS Usenet.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
VPN IPWhois.io 2025-10-08 16:31:38 2026-09-14 12:26:56 anonymization vpn
DDoS Attacker Blocklist.net.ua 2026-04-30 12:35:01 2026-09-13 16:38:54 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:42:01 2026-09-11 16:41:35 attacker malicious-activity
Bruteforce login attacker Blocklist.de 2025-12-02 20:52:12 2026-06-19 09:00:04 malicious-activity
HTTP Attacker Blocklist.de 2025-12-02 20:48:00 2026-06-19 07:00:05 malicious-activity
HTTP bot Blocklist.de 2026-06-05 08:00:11 2026-06-05 08:00:11 malicious-activity
Malicious Host AbuseIPDB 2026-05-29 15:15:38 2026-06-03 05:59:39 malicious-activity
Suspicious Host AbuseIPDB 2024-08-24 12:35:56 2026-05-28 19:45:02 anomalous-activity

Tags

apache ddos rfi attacker login bruteforce bot joomla wordpress abuse spam

Whois information

AS name
AS206092 XS Usenet
AS registry
apnic
AS date
2021-03-04 00:00:00
AS CIDR
103.163.220.0/24
CIDR
103.163.220.0/23
Registrant
XS Usenet
Address
Jan Pietersz. Coenstraat 7, Den Haag Nederland 2595 WP
City
Tokyo
Postal code
151-0053
Country
JP — Japan 🇯🇵
Contact email
[email protected], [email protected], [email protected]
First indexed
2024-08-25 05:57:15
Last updated
2026-09-14 12:26:57

Malicious IPs in the same CIDR

103.163.220.7 103.163.220.206 103.163.220.55 103.163.220.5 103.163.220.134 103.163.220.147 103.163.220.153 103.163.220.155 103.163.220.164 103.163.220.169 103.163.220.171 103.163.220.242 103.163.220.251 103.163.220.178 103.163.220.241 103.163.220.135 103.163.220.137 103.163.220.145 103.163.220.157 103.163.220.161 103.163.220.167 103.163.220.188 103.163.220.239 103.163.220.141 103.163.220.142