31.173.80.140

Classification: Malicious

31.173.80.140 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-02. Network: AS25159 Metropolitan branch of OJSC MegaFon.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Barracuda 2025-02-14 19:08:09 2026-09-02 19:44:03 attacker malicious-activity
Malicious Host HoneyDB 2026-08-04 00:00:00 2026-08-04 00:00:00 attacker malicious-activity
HTTP Spammer StopForumSpam.com 2019-11-26 02:45:44 2026-05-13 17:07:43 malicious-activity
HTTP Spammer Cleantalk.org 2023-09-20 08:16:40 2023-09-20 08:16:40 malicious-activity
Mail Spammer Blocklist.de 2019-02-13 07:12:52 2019-02-14 07:13:13
IMAP Attacker Blocklist.de 2019-02-13 07:09:16 2019-02-14 07:09:17

Tags

bot abuse attacker imap pop3 sasl mail spam

Whois information

AS name
AS25159 Metropolitan branch of OJSC MegaFon
AS registry
ripencc
AS date
2011-04-04 00:00:00
AS CIDR
31.173.80.0/21
Registrant
Metropolitan branch of OJSC MegaFon
City
Moscow
Postal code
109012
Country
RU — Russian Federation 🇷🇺
First indexed
2019-02-13 07:09:16
Last updated
2026-09-02 19:44:04

Malicious IPs in the same CIDR

31.173.81.195 31.173.82.118 31.173.80.59 31.173.82.205 31.173.87.0 31.173.85.42 31.173.84.18 31.173.87.162 31.173.80.140 31.173.81.254 31.173.82.31 31.173.83.118 31.173.81.223 31.173.83.73 31.173.81.62 31.173.86.46 31.173.82.247 31.173.80.247 31.173.82.252 31.173.80.96 31.173.80.105 31.173.85.81 31.173.84.165 31.173.84.138 31.173.81.158