167.172.42.141

Classification: Malicious

167.172.42.141 is a malicious IP address. Reported by 9 threat sources, last seen 2026-08-11. IoC context and downloadable threat intel on Maltiverse.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host CIArmy 2026-08-11 20:02:28 2026-08-11 20:02:28 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-04-09 06:19:19 2026-04-09 06:19:19 anomalous-activity
Malicious Host AbuseIPDB 2025-01-21 00:12:30 2026-04-05 05:59:36 malicious-activity
SSH Attacker Blocklist.de 2025-01-22 14:15:14 2026-03-15 10:02:53 malicious-activity
Proxy FireHOL 2023-01-02 06:05:16 2025-10-06 18:28:48 anonymization
Anonymizer Maltiverse Research Team 2020-11-22 01:15:46 2021-05-23 16:58:11 anonymizer
Anonymizer Maltiverse 2020-10-01 13:51:48 2020-10-01 13:51:48
Bruteforce login attacker Blocklist.de 2020-05-29 08:09:20 2020-09-26 09:39:20
HTTP Attacker Blocklist.de 2020-05-29 08:04:45 2020-09-26 09:33:23
Malicious Host HoneyDB 2020-08-09 00:00:00 2020-09-09 00:00:00
DDoS Attacker Blocklist.net.ua 2020-06-01 02:15:47 2020-09-05 08:48:36
HTTP Spammer Cleantalk.org 2020-06-03 02:24:41 2020-09-04 10:38:07

Tags

anonymization apache ddos rfi attacker login bruteforce bot joomla wordpress abuse anonymizer ssh

Whois information

AS registry
ripencc
AS date
1993-08-30 00:00:00
AS CIDR
167.172.32.0/20
CIDR
167.172.0.0/16
Registrant
DigitalOcean, LLC
Address
101 Avenue of the Americas, 10th Floor New York 10013 UNITED STATES
Country
GB — United Kingdom 🇬🇧
First indexed
2020-05-29 08:04:45
Last updated
2026-08-11 20:02:29

Malicious IPs in the same CIDR

167.172.33.97 167.172.44.97 167.172.44.218 167.172.32.23 167.172.33.228 167.172.42.255 167.172.36.162 167.172.40.228 167.172.42.230 167.172.38.97 167.172.42.56 167.172.34.203 167.172.34.114 167.172.39.1 167.172.42.141 167.172.42.67 167.172.45.225