31.58.16.96
Classification: Malicious
31.58.16.96 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-07. Network: AS397423 Private Customer.
Current activity
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Proxy | FireHOL | 2025-05-02 21:36:22 | 2026-09-07 18:11:20 | anomalous-activity anonymization proxy | |
| Anonymizer | FireHOL | 2026-05-25 08:49:34 | 2026-09-07 17:13:57 | anomalous-activity anonymization | |
| Malicious Host | HoneyDB | 2026-05-05 00:00:00 | 2026-05-05 00:00:00 | malicious-activity | |
| Proxy | IPWhois.io | 2025-06-08 07:07:37 | 2025-06-15 10:25:22 | anonymization | |
| HTTP Spammer | Cleantalk.org | 2025-01-18 15:33:41 | 2025-01-18 15:33:41 | malicious-activity |
Tags
anonymizationWhois information
- AS name
- AS397423 Private Customer
- AS registry
- ripencc
- AS date
- 2011-01-28 00:00:00
- AS CIDR
- 31.58.16.0/24
- Registrant
- Private Customer
- City
- Ashburn
- State
- VA
- Postal code
- 20147
- Country
- US — United States 🇺🇸
- First indexed
- 2025-01-18 15:33:41
- Last updated
- 2026-09-07 18:11:20
Malicious IPs in the same CIDR
31.58.16.76 31.58.16.168 31.58.16.232 31.58.16.22 31.58.16.96 31.58.16.161 31.58.16.59 31.58.16.85