167.248.133.42
Classification: Whitelisted
167.248.133.42 is a whitelisted (trusted) IP address. Reported by 6 threat sources, last seen 2026-07-16. Network: AS398324 Censys, Inc..
Current activity
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Matched whitelist source: Censys_registrant | Maltiverse | 2026-07-16 17:52:19 | 2026-07-16 17:52:19 | benign | |
| Malicious Host | CIArmy | 2024-05-06 11:52:33 | 2024-05-30 11:13:45 | malicious-activity | |
| SSH Attacker | Blocklist.de | 2021-09-15 05:32:36 | 2024-05-25 04:50:09 | malicious-activity | |
| Mail Spammer | Blocklist.de | 2024-05-14 03:30:54 | 2024-05-23 03:25:36 | malicious-activity | |
| IMAP Attacker | Blocklist.de | 2024-05-14 03:14:28 | 2024-05-15 03:07:36 | malicious-activity | |
| Brute force attack on the SMTP service of the server Relay | Blocklist.net.ua | 2023-04-01 07:45:19 | 2023-10-01 06:17:34 | malicious-activity | |
| HTTP Spammer | StopForumSpam.com | 2023-03-12 17:53:21 | 2023-05-18 01:38:06 | malicious-activity | |
| Malicious Host | HoneyDB | 2021-11-08 00:00:00 | 2023-02-26 00:00:00 | malicious-activity | |
| Proxy | Maltiverse | 2023-02-17 20:12:08 | 2023-02-18 06:13:42 | anonymization | |
| VPN | Maltiverse | 2023-02-17 20:12:08 | 2023-02-18 06:13:42 | anonymization | |
| Malicious Host | Maltiverse | 2023-02-17 20:12:08 | 2023-02-18 06:13:42 | compromised malicious-activity | |
| Hacking | Maltiverse | 2023-02-17 19:14:58 | 2023-02-18 06:13:42 | malicious-activity | |
| Port Scanner | Maltiverse | 2023-02-17 18:31:54 | 2023-02-18 06:13:42 | anomalous-activity | |
| SQL Injection | Maltiverse | 2022-12-02 11:40:00 | 2023-02-18 06:13:42 | malicious-activity | |
| HTTP Scrapper | Maltiverse | 2022-12-02 11:40:00 | 2023-02-18 06:13:42 | anomalous-activity | |
| HTTP Attacker | Maltiverse | 2022-11-26 15:45:47 | 2023-02-18 06:13:42 | malicious-activity | |
| Bruteforce | Maltiverse | 2022-12-01 02:01:43 | 2023-02-18 05:50:12 | malicious-activity | |
| SSH Attacker | Maltiverse | 2022-12-01 02:01:43 | 2023-02-18 04:40:00 | malicious-activity | |
| FTP Attacker | Maltiverse | 2023-02-17 19:24:53 | 2023-02-17 19:24:53 | malicious-activity | |
| DDoS attack | Maltiverse | 2022-12-02 11:40:00 | 2022-12-15 01:00:48 | malicious-activity | |
| Mail Spammer | Maltiverse | 2022-11-26 15:45:47 | 2022-12-12 16:28:22 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2021-10-12 00:27:09 | 2022-02-07 03:30:22 | malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2021-10-12 00:37:42 | 2021-10-31 01:54:20 | malicious-activity |
Tags
abuse bot ssh bruteforce apache ddos rfi attacker login joomla wordpress imap pop3 sasl mail spamWhois information
- AS name
- AS398324 Censys, Inc.
- AS registry
- arin
- AS date
- 2020-08-21 00:00:00
- AS CIDR
- 167.248.133.0/24
- CIDR
- 167.248.133.0/24
- Registrant
- Censys, Inc.
- Address
- 116 1/2 S Main Street
- City
- Ann Arbor
- State
- MI
- Postal code
- 48104
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2021-09-15 05:32:36
- Last updated
- 2026-07-16 17:52:19