194.26.192.253

Classification: Malicious

194.26.192.253 is a malicious IP address. Reported by 7 threat sources, last seen 2026-09-05. Network: AS210558 1337 Services GmbH.

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Open proxy โ€” Provides anonymization that can hide an attacker.
  • VPN node โ€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-03-29 13:17:23 2026-09-05 17:18:00 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 17:21:58 2026-09-04 17:21:58 attacker malicious-activity
VPN IPWhois.io 2026-06-19 11:50:34 2026-07-20 08:37:48 anonymization vpn
HTTP Spammer StopForumSpam.com 2026-04-11 15:51:01 2026-07-09 10:04:44 attacker malicious-activity
Malicious Host AbuseIPDB 2026-03-27 21:54:37 2026-05-30 08:05:23 compromised malicious-activity
Bruteforce login attacker Blocklist.de 2026-04-03 05:00:19 2026-04-07 05:00:30 malicious-activity
HTTP Attacker Blocklist.de 2026-04-03 03:00:21 2026-04-07 03:00:30 malicious-activity
Port Scanner AbuseIPDB 2026-03-28 01:51:05 2026-04-01 09:12:05 anomalous-activity
Hacking AbuseIPDB 2026-03-27 20:05:41 2026-04-01 09:12:05 malicious-activity
HTTP Attacker AbuseIPDB 2026-03-27 19:49:50 2026-04-01 09:12:05 malicious-activity
Bruteforce AbuseIPDB 2026-03-27 19:37:56 2026-04-01 09:12:05 malicious-activity
HTTP Scrapper AbuseIPDB 2026-03-27 19:26:46 2026-04-01 07:54:18 anomalous-activity
SSH Attacker AbuseIPDB 2026-03-28 09:25:13 2026-04-01 04:34:11 malicious-activity
DDoS Attacker AbuseIPDB 2026-03-28 04:35:07 2026-03-31 21:17:56 malicious-activity
Proxy AbuseIPDB 2026-03-30 16:31:39 2026-03-30 16:31:39 anonymization
VPN AbuseIPDB 2026-03-30 11:42:23 2026-03-30 11:42:23 anonymization
SQL Injection AbuseIPDB 2026-03-29 07:44:33 2026-03-29 07:44:33 malicious-activity
Suspicious Host AbuseIPDB 2025-08-16 23:29:37 2026-03-27 23:00:43 anomalous-activity
SSH Attacker Blocklist.de 2023-07-10 04:15:31 2023-07-11 04:15:30 malicious-activity
Mail Spammer Abuseat.org 2023-07-10 04:15:35 2023-07-10 04:15:35
Bruteforce Maltiverse 2023-07-09 09:44:45 2023-07-09 22:39:35 malicious-activity
SSH Attacker Maltiverse 2023-07-09 09:44:45 2023-07-09 22:39:35 malicious-activity
Port Scanner Maltiverse 2023-07-09 13:59:57 2023-07-09 15:20:05 anomalous-activity
Hacking Maltiverse 2023-07-09 15:07:31 2023-07-09 15:07:31 malicious-activity
Mail Spammer Maltiverse 2023-06-26 15:22:54 2023-07-09 01:01:19 malicious-activity
DDoS attack Maltiverse 2023-07-03 11:23:23 2023-07-03 11:23:23 malicious-activity
HTTP Scrapper Maltiverse 2023-07-03 11:23:23 2023-07-03 11:23:23 anomalous-activity

Tags

ssh bruteforce bot abuse apache ddos rfi attacker login joomla wordpress

Whois information

AS name
AS210558 1337 Services GmbH
AS registry
ripencc
AS date
2021-10-28 00:00:00
AS CIDR
194.26.192.0/24
CIDR
194.26.192.0/24
Registrant
1337 Services GmbH
Address
Ludwig-Erhard-Str. 18 20459 Hamburg GERMANY
City
Amsterdam
Postal code
1012 AB
Country
NL โ€” Netherlands ๐Ÿ‡ณ๐Ÿ‡ฑ
First indexed
2023-07-10 04:15:31
Last updated
2026-09-05 17:18:01

Malicious IPs in the same CIDR

194.26.192.76 194.26.192.203 194.26.192.51 194.26.192.29 194.26.192.15 194.26.192.134 194.26.192.177 194.26.192.34 194.26.192.111 194.26.192.33 194.26.192.221 194.26.192.146 194.26.192.17 194.26.192.77 194.26.192.163 194.26.192.145 194.26.192.129 194.26.192.253 194.26.192.92 194.26.192.196 194.26.192.215 194.26.192.172 194.26.192.49 194.26.192.99 194.26.192.131