45.131.194.226

Classification: Malicious

45.131.194.226 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-03. Network: AS206092 VPN-Consumer-US.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.
  • VPN node β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
HTTP Spammer StopForumSpam.com 2023-02-18 07:45:14 2026-09-03 07:10:33 attacker malicious-activity
VPN IPWhois.io 2025-04-08 04:20:34 2026-07-27 21:30:17 anonymization vpn
Hacking AbuseIPDB 2025-01-16 21:27:47 2026-07-27 02:19:46 attacker malicious-activity
HTTP Attacker AbuseIPDB 2025-02-26 05:06:53 2026-07-27 02:19:46 attacker malicious-activity
Bruteforce AbuseIPDB 2025-01-16 21:27:47 2026-07-24 06:00:21 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-07-24 06:00:00 2026-07-24 06:00:00 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-07-23 02:30:35 2026-07-23 02:30:35 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2025-01-08 22:52:33 2026-07-21 13:55:20 anomalous-activity attacker malicious-activity
Malicious Host AbuseIPDB 2025-04-05 18:38:02 2026-07-20 16:33:17 attacker compromised malicious-activity
Port Scanner AbuseIPDB 2026-06-30 18:06:44 2026-07-15 09:02:20 anomalous-activity attacker malicious-activity reconnaissance
Suspicious Host AbuseIPDB 2024-12-24 21:30:32 2026-05-19 17:16:10 anomalous-activity
HTTP bot Blocklist.de 2025-10-09 02:32:01 2025-10-09 02:32:01 malicious-activity
HTTP bot Blocklist.de Bots 2025-10-08 02:41:42 2025-10-08 02:41:42 malicious-activity
HTTP Attacker Blocklist.de 2025-06-24 06:46:21 2025-06-25 06:34:35 malicious-activity
DDoS attack AbuseIPDB 2025-03-01 06:12:10 2025-04-02 03:27:46 malicious-activity
Proxy IPWhois.io 2025-03-30 08:32:49 2025-03-30 08:32:49 anonymization

Tags

bot abuse apache ddos rfi attacker spam bruteforce

Whois information

AS name
AS206092 VPN-Consumer-US
AS registry
ripencc
AS date
2019-07-22 00:00:00
AS CIDR
45.131.194.0/24
CIDR
45.131.194.0/24
Registrant
VPN-Consumer-US
Address
2355 Market St San Francisco, CA 94114 United States
City
San Francisco
State
CA
Postal code
94102
Country
US β€” United States πŸ‡ΊπŸ‡Έ
First indexed
2023-02-18 07:45:14
Last updated
2026-09-03 07:10:38

Malicious IPs in the same CIDR

45.131.194.239 45.131.194.241 45.131.194.198 45.131.194.160 45.131.194.145 45.131.194.246 45.131.194.226 45.131.194.242 45.131.194.245 45.131.194.209 45.131.194.243 45.131.194.249 45.131.194.85 45.131.194.110 45.131.194.157 45.131.194.172 45.131.194.177 45.131.194.58 45.131.194.91 45.131.194.112 45.131.194.140 45.131.194.142 45.131.194.146 45.131.194.150 45.131.194.169