31.163.161.214
Classification: Malicious
31.163.161.214 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-02. Network: AS12389 PJSC Rostelecom.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| HTTP bot | Blocklist.de | 2026-09-02 08:00:39 | 2026-09-02 08:00:39 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2021-01-07 14:00:24 | 2021-01-11 11:05:14 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2021-01-07 14:00:19 | 2021-01-11 11:05:10 | malicious-activity | |
| Malicious Host | CIArmy | 2021-01-05 04:09:43 | 2021-01-08 10:01:45 | malicious-activity | |
| Mail Spammer | Barracuda | 2021-01-05 04:09:44 | 2021-01-07 17:35:03 | ||
| Mail Spammer | Abuseat.org | 2021-01-05 04:09:44 | 2021-01-07 17:35:03 | ||
| SSH Attacker | Blocklist.de | 2021-01-02 09:40:08 | 2021-01-06 08:47:52 |
Tags
ssh bruteforce bot attacker spamWhois information
- AS name
- AS12389 PJSC Rostelecom
- AS registry
- ripencc
- AS date
- 2011-02-17 00:00:00
- AS CIDR
- 31.163.128.0/18
- City
- Shadrinsk
- Country
- RU — Russian Federation 🇷🇺
- First indexed
- 2021-01-02 09:40:08
- Last updated
- 2026-09-02 08:00:39
Malicious IPs in the same CIDR
31.163.179.226 31.163.190.68 31.163.156.203 31.163.161.214 31.163.172.200 31.163.158.79 31.163.132.140 31.163.142.107 31.163.137.117 31.163.156.190 31.163.132.149