193.163.125.125
Classification: Malicious
193.163.125.125 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-01. Network: AS211298 Driftnet Ltd.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Port Scanner | AbuseIPDB | 2024-07-12 02:04:49 | 2026-09-01 18:25:53 | anomalous-activity attacker malicious-activity reconnaissance | |
| Bruteforce | AbuseIPDB | 2024-07-26 17:10:16 | 2026-09-01 13:56:07 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2024-07-12 09:30:41 | 2026-09-01 13:56:07 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2024-07-02 00:16:47 | 2026-09-01 09:31:52 | attacker compromised malicious-activity | |
| Hacking | AbuseIPDB | 2024-07-12 09:59:41 | 2026-09-01 09:31:52 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2024-07-13 06:30:54 | 2026-08-27 16:55:45 | attacker malicious-activity | |
| FTP Attacker | AbuseIPDB | 2024-12-01 18:51:11 | 2026-08-27 03:01:17 | attacker malicious-activity | |
| Malicious Host | CIArmy | 2021-07-04 02:51:54 | 2026-08-19 20:03:00 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-01-22 08:12:23 | 2026-08-18 09:16:46 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-01-22 08:12:13 | 2026-08-18 09:16:45 | attacker malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-07-13 08:10:03 | 2026-08-05 12:16:38 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2024-08-14 00:45:05 | 2026-07-29 02:30:11 | anomalous-activity | |
| Known Attacker | AbuseIPDB | 2025-01-31 05:04:23 | 2026-07-20 03:40:04 | attacker malicious-activity | |
| SQL Injection | AbuseIPDB | 2024-08-16 15:18:30 | 2026-07-12 23:45:34 | attacker malicious-activity | |
| Mail Spammer | AbuseIPDB | 2024-08-15 02:57:29 | 2026-06-19 23:04:09 | attacker malicious-activity | |
| IoT Attacker | AbuseIPDB | 2025-01-31 05:04:23 | 2026-06-16 00:03:29 | malicious-activity | |
| IMAP Attacker | AbuseIPDB | 2024-08-07 21:09:25 | 2025-11-19 21:17:56 | malicious-activity | |
| DNS Poisoning | AbuseIPDB | 2024-08-28 00:50:04 | 2025-11-12 22:37:56 | compromised | |
| DNS Compromise | AbuseIPDB | 2024-08-28 00:50:04 | 2025-09-26 16:40:18 | compromised | |
| DDoS attack | AbuseIPDB | 2024-07-12 03:18:47 | 2025-04-30 15:13:46 | malicious-activity | |
| SIP Attacker | AbuseIPDB | 2024-11-21 07:51:02 | 2025-04-04 11:48:17 | malicious-activity | |
| Unauthorized scanning of hosts | Blocklist.net.ua | 2022-08-29 03:21:23 | 2025-02-02 20:31:32 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2024-08-07 08:30:53 | 2024-10-14 10:09:00 | malicious-activity |
Tags
abuse apache ddos rfi attackerWhois information
- AS name
- AS211298 Driftnet Ltd
- AS registry
- ripencc
- AS date
- 2021-05-05 00:00:00
- AS CIDR
- 193.163.125.0/24
- Registrant
- Driftnet Ltd
- City
- Leeds
- Postal code
- LS1 6AL
- Country
- GB — United Kingdom 🇬🇧
- First indexed
- 2021-07-04 02:51:54
- Last updated
- 2026-09-01 20:00:27
Malicious IPs in the same CIDR
193.163.125.137 193.163.125.139 193.163.125.75 193.163.125.159 193.163.125.100 193.163.125.228 193.163.125.74 193.163.125.95 193.163.125.253 193.163.125.125 193.163.125.254 193.163.125.189 193.163.125.219 193.163.125.198 193.163.125.165 193.163.125.195 193.163.125.245 193.163.125.238 193.163.125.164 193.163.125.129 193.163.125.43 193.163.125.155 193.163.125.128 193.163.125.114 193.163.125.120