167.88.63.112

Classification: Malicious

167.88.63.112 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS63023 GTHost.

Current activity

  • Malware distribution β€” This indicator is distributing malware.
  • Open proxy β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
VPN vpnsuper Maltiverse Threat Observatory 2026-06-24 21:16:30 2026-09-02 09:46:07 anonymization country_code:co country_code:ec industry:financial-services malicious-activity
Generic Malware Maltiverse Threat Observatory 2026-09-01 22:10:05 2026-09-01 22:10:05 country_code:ec malicious-activity malware
Proxy IPWhois.io 2026-09-01 21:18:11 2026-09-01 21:18:11 anonymization proxy

Tags

port:8080 port:9999 port:7000 port:110 port:9020 port:5959 port:800

Whois information

AS name
AS63023 GTHost
Registrant
GTHost
City
Atlanta
State
GA
Postal code
30303
Country
US β€” United States πŸ‡ΊπŸ‡Έ
First indexed
2026-09-01 21:18:11
Last updated
2026-09-02 21:15:16