164.92.148.64
Classification: Malicious
164.92.148.64 is a malicious IP address. Reported by 9 threat sources, last seen 2026-09-05. Network: AS46930 Denver Public Schools.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.net.ua | 2025-12-02 06:50:24 | 2026-09-05 17:02:31 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 17:06:09 | 2026-09-04 17:06:09 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-03-20 04:21:34 | 2026-05-13 07:33:47 | anomalous-activity | |
| Malicious Host | AbuseIPDB | 2025-11-28 23:05:59 | 2025-12-10 01:43:51 | malicious-activity | |
| Malicious Host | CIArmy | 2025-12-03 04:45:47 | 2025-12-03 08:54:20 | malicious-activity | |
| SSH Attacker | Blocklist.de | 2022-12-18 02:21:42 | 2025-12-02 21:36:47 | malicious-activity | |
| Proxy | FireHOL | 2023-02-22 07:28:33 | 2025-10-06 17:29:15 | anonymization | |
| ET COMPROMISED Known Compromised or Hostile Host Traffic UDP | Emerging Threats | 2022-12-28 21:10:09 | 2023-02-06 08:51:26 | malicious-activity | |
| ET COMPROMISED Known Compromised or Hostile Host Traffic TCP | Emerging Threats | 2022-12-28 21:10:05 | 2023-02-06 08:51:23 | malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2023-01-26 02:14:51 | 2023-02-03 02:18:47 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2023-01-26 01:53:25 | 2023-02-03 01:58:25 | malicious-activity | |
| Malicious Host | HoneyDB | 2022-12-18 00:00:00 | 2023-01-10 00:00:00 | malicious-activity | |
| Bruteforce | Maltiverse | 2022-12-17 11:52:11 | 2022-12-27 05:54:32 | malicious-activity | |
| SSH Attacker | Maltiverse | 2022-12-17 11:52:11 | 2022-12-26 16:29:38 | malicious-activity | |
| Port Scanner | Maltiverse | 2022-12-17 14:31:41 | 2022-12-26 14:12:41 | anomalous-activity | |
| Hacking | Maltiverse | 2022-12-17 11:52:11 | 2022-12-26 14:12:41 | malicious-activity | |
| Malicious Host | Maltiverse | 2022-12-20 18:15:27 | 2022-12-26 00:31:17 | compromised malicious-activity | |
| HTTP Attacker | Maltiverse | 2022-12-18 22:52:05 | 2022-12-26 00:31:17 | malicious-activity | |
| HTTP Scrapper | Maltiverse | 2022-12-18 06:12:57 | 2022-12-26 00:31:17 | anomalous-activity | |
| FTP Attacker | Maltiverse | 2022-12-17 14:00:11 | 2022-12-18 15:02:18 | malicious-activity | |
| DDoS attack | Maltiverse | 2022-12-18 06:12:57 | 2022-12-18 06:12:57 | malicious-activity | |
| SQL Injection | Maltiverse | 2022-12-18 06:12:57 | 2022-12-18 06:12:57 | malicious-activity | |
| IMAP Attacker | Maltiverse | 2022-12-18 06:12:57 | 2022-12-18 06:12:57 | malicious-activity | |
| IoT Attacker | Maltiverse | 2022-12-18 06:12:57 | 2022-12-18 06:12:57 | malicious-activity | |
| Cobalt Strike | ThreatFox Abuse.ch | 2022-05-17 19:18:38 | 2022-05-17 19:18:38 | malicious-activity |
Tags
anonymization ssh bruteforce bot attacker login joomla wordpress apache ddos rfi cobaltstrike digitalocean-asn agentemis beacon abuseWhois information
- AS name
- AS46930 Denver Public Schools
- AS registry
- arin
- AS date
- 2020-05-04 00:00:00
- AS CIDR
- 164.92.144.0/20
- CIDR
- 164.92.64.0/18, 164.92.128.0/17
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas FL2
- City
- New York
- State
- NY
- Postal code
- 10013
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2022-05-17 19:18:38
- Last updated
- 2026-09-05 17:02:31
Malicious IPs in the same CIDR
164.92.152.95 164.92.158.162 164.92.155.196 164.92.148.205 164.92.148.64 164.92.148.68 164.92.151.91 164.92.155.216 164.92.156.170