193.163.125.195

Classification: Malicious

193.163.125.195 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-31. Network: AS211298 Driftnet Ltd.

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Known scanner โ€” Seen scanning hosts over the Internet.
  • IoT threat โ€” Seen attacking IoT devices.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Bruteforce AbuseIPDB 2024-07-13 04:41:56 2026-08-31 09:41:18 attacker malicious-activity
Port Scanner AbuseIPDB 2024-07-12 02:04:43 2026-08-31 09:41:18 anomalous-activity attacker malicious-activity reconnaissance
SSH Attacker AbuseIPDB 2024-07-13 15:30:50 2026-08-31 04:13:11 attacker malicious-activity
Hacking AbuseIPDB 2024-07-13 20:29:12 2026-08-30 03:55:04 attacker malicious-activity
HTTP Attacker AbuseIPDB 2024-07-12 06:30:17 2026-08-28 06:24:12 attacker malicious-activity
Malicious Host AbuseIPDB 2024-07-02 00:04:14 2026-08-20 20:18:13 attacker compromised malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-01-22 08:12:48 2026-08-18 09:16:50 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-01-22 08:12:38 2026-08-18 09:16:48 attacker malicious-activity
IoT Attacker AbuseIPDB 2024-12-10 00:00:20 2026-08-11 15:22:38 iot malicious-activity
HTTP Scrapper AbuseIPDB 2024-11-21 17:46:07 2026-08-09 07:45:10 anomalous-activity attacker malicious-activity
SIP Attacker AbuseIPDB 2024-12-03 14:21:53 2026-08-04 05:15:25 attacker malicious-activity
Mail Spammer AbuseIPDB 2024-12-25 08:21:00 2026-08-02 04:43:05 attacker malicious-activity
FTP Attacker AbuseIPDB 2024-08-05 03:01:16 2026-07-30 22:54:48 attacker malicious-activity
Malicious Host CIArmy 2021-07-04 02:52:18 2026-07-20 20:03:06 attacker malicious-activity
IMAP Attacker AbuseIPDB 2024-08-09 21:22:36 2026-06-18 21:35:22 attacker malicious-activity
SQL Injection AbuseIPDB 2024-09-13 17:40:04 2026-06-11 20:53:58 attacker malicious-activity
DNS Compromise AbuseIPDB 2024-12-10 00:00:20 2026-06-09 15:54:55 compromised malicious-activity
DNS Poisoning AbuseIPDB 2024-09-17 06:12:48 2026-06-09 15:54:55 compromised malicious-activity
DDoS Attacker AbuseIPDB 2026-04-05 21:57:41 2026-06-08 12:23:52 attacker malicious-activity
Proxy AbuseIPDB 2026-05-03 00:10:04 2026-05-03 00:10:04 anonymization
Known Attacker AbuseIPDB 2024-12-10 00:00:20 2026-04-24 05:45:22 malicious-activity
DDoS attack AbuseIPDB 2024-07-12 03:18:36 2025-05-07 09:18:13 malicious-activity
Unauthorized scanning of hosts Blocklist.net.ua 2022-09-13 03:51:41 2024-12-22 20:41:44 malicious-activity
HTTP Attacker Blocklist.de 2021-12-06 04:55:32 2024-09-25 07:47:52 malicious-activity

Tags

abuse apache ddos rfi attacker

Whois information

AS name
AS211298 Driftnet Ltd
AS registry
ripencc
AS date
2021-05-05 00:00:00
AS CIDR
193.163.125.0/24
Registrant
Driftnet Ltd
City
Leeds
Postal code
LS1 6AL
Country
GB โ€” United Kingdom ๐Ÿ‡ฌ๐Ÿ‡ง
First indexed
2021-07-04 02:52:18
Last updated
2026-08-31 10:04:57

Malicious IPs in the same CIDR

193.163.125.137 193.163.125.139 193.163.125.75 193.163.125.159 193.163.125.100 193.163.125.228 193.163.125.74 193.163.125.95 193.163.125.253 193.163.125.125 193.163.125.254 193.163.125.189 193.163.125.219 193.163.125.198 193.163.125.165 193.163.125.195 193.163.125.245 193.163.125.238 193.163.125.164 193.163.125.129 193.163.125.43 193.163.125.155 193.163.125.128 193.163.125.114 193.163.125.120