194.165.16.122

Classification: Malicious

194.165.16.122 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-28. Network: AS48721 Flyservers S.A..

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Known scanner โ€” Seen scanning hosts over the Internet.
  • IoT threat โ€” Seen attacking IoT devices.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-07-28 11:15:01 2026-08-28 09:17:00 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-07-28 11:14:59 2026-08-28 09:16:59 attacker malicious-activity
Malicious Host CIArmy 2026-07-23 20:03:43 2026-08-27 20:04:49 attacker malicious-activity
Malicious Host HoneyDB 2026-07-22 00:00:00 2026-08-27 00:00:00 attacker malicious-activity
SSH Attacker Blocklist.de 2026-07-24 14:00:25 2026-08-10 14:00:40 attacker malicious-activity
Bruteforce AbuseIPDB 2026-07-22 15:48:40 2026-08-02 07:32:46 attacker malicious-activity
Port Scanner AbuseIPDB 2026-07-22 15:48:40 2026-08-02 07:25:02 anomalous-activity attacker malicious-activity reconnaissance
Hacking AbuseIPDB 2026-07-22 15:48:40 2026-08-02 07:14:04 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-07-22 16:32:08 2026-08-02 06:00:02 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-07-23 01:11:16 2026-08-02 05:02:10 attacker malicious-activity
Malicious Host AbuseIPDB 2026-07-22 23:46:24 2026-08-01 22:03:44 attacker compromised malicious-activity
HTTP Scrapper AbuseIPDB 2026-07-22 19:34:09 2026-08-01 19:04:11 anomalous-activity attacker malicious-activity
Mail Spammer AbuseIPDB 2026-07-23 01:10:09 2026-08-01 18:53:13 attacker malicious-activity
IoT Attacker AbuseIPDB 2026-07-23 03:19:47 2026-07-31 11:38:57 iot malicious-activity
DDoS Attacker AbuseIPDB 2026-07-24 20:50:03 2026-07-29 10:16:00 attacker malicious-activity
FTP Attacker AbuseIPDB 2026-07-23 01:41:11 2026-07-29 02:30:00 attacker malicious-activity
SQL Injection AbuseIPDB 2026-07-25 13:38:37 2026-07-25 13:38:37 attacker malicious-activity
IMAP Attacker AbuseIPDB 2026-07-23 16:40:17 2026-07-23 16:40:17 attacker malicious-activity
Phishing AbuseIPDB 2026-07-23 16:40:17 2026-07-23 16:40:17 malicious-activity phishing
SIP Attacker AbuseIPDB 2026-07-23 01:39:33 2026-07-23 01:39:33 attacker malicious-activity
cerber,ransomware Maltiverse 2017-10-17 06:35:11 2017-10-17 06:35:11

Tags

cerber ransomware ssh bruteforce bot

Whois information

AS name
AS48721 Flyservers S.A.
AS registry
ripencc
AS date
2009-01-16 00:00:00
AS CIDR
194.165.16.0/23
Registrant
Flyservers S.A.
City
Kaunas
Postal code
44261
Country
LT โ€” Lithuania ๐Ÿ‡ฑ๐Ÿ‡น
First indexed
2017-10-17 06:35:11
Last updated
2026-08-31 22:01:58

Malicious IPs in the same CIDR

194.165.16.123 194.165.16.21 194.165.16.122 194.165.16.121 194.165.17.13