157.20.182.81

Classification: Malicious

157.20.182.81 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS152485 Hosterdaddy Private Limited.

Current activity

  • Command & Control server — Used by cybercriminals to control victim computers.
  • Malware distribution — This indicator is distributing malware.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Tofsee Maltiverse Threat Observatory 2026-06-25 10:40:07 2026-09-02 20:40:24 botnet country_code:co industry:education-and-nonprofits malicious-activity
Generic Malware Maltiverse Threat Observatory 2026-06-25 07:10:05 2026-08-04 07:15:12 country_code:co industry:education-and-nonprofits malicious-activity malware
Tofsee ThreatFox Abuse.ch 2026-06-25 05:28:29 2026-08-04 06:25:04 malicious-activity

Tags

port:430 port:418 port:428 port:420 tofsee gheg port:431 port:422 port:423 port:427 port:424 port:417 port:421 port:416 port:425 port:419 port:429

Whois information

AS name
AS152485 Hosterdaddy Private Limited
Registrant
Hosterdaddy Private Limited
City
Naaldwijk
Postal code
2671 JA
Country
NL — Netherlands 🇳🇱
First indexed
2026-06-25 06:25:04
Last updated
2026-09-02 21:14:13