157.20.182.81
Classification: Malicious
157.20.182.81 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS152485 Hosterdaddy Private Limited.
Current activity
- Command & Control server — Used by cybercriminals to control victim computers.
- Malware distribution — This indicator is distributing malware.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Tofsee | Maltiverse Threat Observatory | 2026-06-25 10:40:07 | 2026-09-02 20:40:24 | botnet country_code:co industry:education-and-nonprofits malicious-activity | |
| Generic Malware | Maltiverse Threat Observatory | 2026-06-25 07:10:05 | 2026-08-04 07:15:12 | country_code:co industry:education-and-nonprofits malicious-activity malware | |
| Tofsee | ThreatFox Abuse.ch | 2026-06-25 05:28:29 | 2026-08-04 06:25:04 | malicious-activity |
Tags
port:430 port:418 port:428 port:420 tofsee gheg port:431 port:422 port:423 port:427 port:424 port:417 port:421 port:416 port:425 port:419 port:429Whois information
- AS name
- AS152485 Hosterdaddy Private Limited
- Registrant
- Hosterdaddy Private Limited
- City
- Naaldwijk
- Postal code
- 2671 JA
- Country
- NL — Netherlands 🇳🇱
- First indexed
- 2026-06-25 06:25:04
- Last updated
- 2026-09-02 21:14:13