151.80.118.222

Classification: Malicious

151.80.118.222 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-05. Network: AS16276 OVH SAS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • IoT threat — Seen attacking IoT devices.
  • Open proxy — Provides anonymization that can hide an attacker.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.net.ua 2023-10-18 06:09:51 2026-09-05 16:55:17 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:58:32 2026-09-04 16:58:32 attacker malicious-activity
Suspicious Host AbuseIPDB 2025-05-12 02:36:43 2026-04-27 17:51:59 anomalous-activity
Malicious Host AbuseIPDB 2024-04-20 22:17:09 2026-04-09 02:20:16 compromised malicious-activity
SSH Attacker Blocklist.de 2023-09-28 04:13:16 2026-04-02 10:01:37 malicious-activity
Bruteforce AbuseIPDB 2024-04-03 23:28:49 2026-03-01 21:54:24 malicious-activity
SSH Attacker AbuseIPDB 2024-04-03 23:28:49 2026-03-01 21:54:24 malicious-activity
HTTP Attacker Blocklist.de 2026-01-24 02:05:42 2026-02-23 03:02:22 malicious-activity
HTTP Attacker AbuseIPDB 2024-04-11 08:58:18 2026-02-22 23:31:02 malicious-activity
Hacking AbuseIPDB 2024-04-04 04:11:15 2026-02-22 09:18:02 malicious-activity
Port Scanner AbuseIPDB 2024-04-04 04:11:15 2026-02-22 09:18:02 anomalous-activity
Bruteforce login attacker Blocklist.de 2026-01-31 05:04:07 2026-02-22 05:01:06 malicious-activity
HTTP Scrapper AbuseIPDB 2024-04-04 04:11:15 2026-02-20 16:15:04 anomalous-activity
Malicious Host HoneyDB 2023-10-01 00:00:00 2026-02-20 00:00:00 malicious-activity
DDoS Attacker AbuseIPDB 2026-01-21 13:53:02 2026-02-14 05:09:11 malicious-activity
Mail Spammer AbuseIPDB 2024-05-08 15:51:37 2026-02-14 05:09:11 malicious-activity
FTP Attacker AbuseIPDB 2024-04-04 04:11:15 2026-02-13 14:18:20 malicious-activity
DNS Compromise AbuseIPDB 2024-05-08 15:51:37 2026-02-11 17:13:02 compromised
DNS Poisoning AbuseIPDB 2024-05-08 15:51:37 2026-02-11 17:13:02 compromised
Known Attacker AbuseIPDB 2024-05-08 15:51:37 2026-02-11 17:13:02 malicious-activity
SIP Attacker AbuseIPDB 2024-07-31 14:08:03 2026-02-11 17:13:02 malicious-activity
Proxy AbuseIPDB 2024-07-31 14:08:03 2026-02-11 17:13:02 anonymization
VPN AbuseIPDB 2024-07-31 14:08:03 2026-02-11 17:13:02 anonymization
SQL Injection AbuseIPDB 2024-04-04 04:11:15 2026-02-11 17:13:02 malicious-activity
IoT Attacker AbuseIPDB 2024-04-04 04:11:15 2026-02-11 17:13:02 malicious-activity
Phishing AbuseIPDB 2024-07-31 14:08:03 2026-02-11 17:13:02 malicious-activity
IMAP Attacker AbuseIPDB 2024-04-04 04:11:15 2026-02-11 17:13:02 malicious-activity
DDoS attack AbuseIPDB 2024-04-04 04:11:15 2025-03-18 19:28:24 malicious-activity
SIP Attacker Blocklist.de 2023-10-06 03:17:28 2024-12-22 11:29:24 malicious-activity
Mail Spammer Abuseat.org 2023-09-28 04:13:16 2023-09-28 04:13:16

Tags

ssh bruteforce bot sip attacker abuse apache ddos rfi login joomla wordpress

Whois information

AS name
AS16276 OVH SAS
AS registry
ripencc
AS date
1991-05-13 00:00:00
AS CIDR
151.80.0.0/16
CIDR
151.80.118.0/24
Registrant
OVH SAS
Address
OVH SAS 2 rue Kellermann 59100 Roubaix France
City
Roubaix
Postal code
59100
Country
FR — France 🇫🇷
Contact email
[email protected]
First indexed
2023-09-28 04:13:16
Last updated
2026-09-05 16:55:17

Malicious IPs in the same CIDR

151.80.76.67 151.80.148.154 151.80.61.151 151.80.118.222 151.80.74.167 151.80.117.61 151.80.199.17