31.172.138.135
Classification: Malicious
31.172.138.135 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-11. Network: AS1820 Domonet by Wnet.
Current activity
- Known attacker β Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Empty reason | Blocklist.net.ua | 2026-09-04 16:07:51 | 2026-09-11 16:06:00 | attacker malicious-activity | |
| DDoS Attacker | Blocklist.net.ua | 2026-02-15 12:13:46 | 2026-09-10 16:06:20 | attacker malicious-activity | |
| Proxy | FireHOL | 2026-03-01 09:12:53 | 2026-05-17 10:47:04 | anonymization | |
| Anonymizer | FireHOL | 2026-03-01 08:17:23 | 2026-05-17 09:49:20 | anonymization | |
| Suspicious Host | AbuseIPDB | 2025-12-04 09:57:43 | 2026-03-10 18:52:47 | anomalous-activity | |
| Proxy | IPWhois.io | 2025-12-04 18:02:39 | 2025-12-04 18:02:39 | anonymization |
Tags
abuse anonymizationWhois information
- AS name
- AS1820 Domonet by Wnet
- Registrant
- Domonet by Wnet
- City
- Kyiv
- Postal code
- 01001
- Country
- UA β Ukraine πΊπ¦
- First indexed
- 2025-12-04 18:02:38
- Last updated
- 2026-09-11 16:06:00