45.94.31.16

Classification: Malicious

45.94.31.16 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-05. Network: AS210558 1337 Services GmbH.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-04-17 12:12:46 2026-09-05 16:15:50 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:17:41 2026-09-04 16:17:41 attacker malicious-activity
SSH Attacker AbuseIPDB 2025-05-07 15:24:20 2026-07-29 06:00:00 attacker malicious-activity
Hacking AbuseIPDB 2025-05-07 08:33:00 2026-07-29 06:00:00 attacker malicious-activity
Bruteforce AbuseIPDB 2025-05-07 08:35:19 2026-07-29 06:00:00 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2025-05-07 12:38:01 2026-07-29 02:39:54 anomalous-activity attacker malicious-activity
Port Scanner AbuseIPDB 2025-05-17 08:07:13 2026-07-29 02:24:38 anomalous-activity attacker malicious-activity reconnaissance
HTTP Attacker AbuseIPDB 2025-05-07 08:33:00 2026-07-29 01:01:15 attacker malicious-activity
Malicious Host AbuseIPDB 2025-05-07 12:53:31 2026-07-29 00:56:26 attacker compromised malicious-activity
Bruteforce login attacker Blocklist.de 2025-05-15 11:12:43 2026-05-24 05:02:01 malicious-activity
HTTP Attacker Blocklist.de 2025-05-15 10:18:32 2026-05-24 03:01:57 malicious-activity
SQL Injection AbuseIPDB 2025-06-05 15:48:17 2026-05-23 06:42:03 attacker malicious-activity
VPN AbuseIPDB 2026-05-02 02:21:54 2026-05-16 20:40:03 anonymization
DDoS Attacker AbuseIPDB 2026-05-13 01:36:10 2026-05-13 01:36:10 attacker malicious-activity
Proxy AbuseIPDB 2026-05-05 15:03:12 2026-05-05 15:03:12 anonymization
FTP Attacker AbuseIPDB 2026-05-05 04:38:17 2026-05-05 04:38:17 attacker malicious-activity
Mail Spammer AbuseIPDB 2026-05-04 17:06:07 2026-05-04 17:06:07 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-04-14 21:35:04 2026-04-17 00:05:19 anomalous-activity
DDoS attack AbuseIPDB 2025-05-09 00:35:52 2025-06-08 22:03:30 malicious-activity
Malware Download URLhaus Abuse.ch 2025-04-09 08:06:38 2025-04-16 12:06:09 malicious-activity

Tags

connectwise apache ddos rfi attacker login bruteforce bot joomla wordpress abuse

Whois information

AS name
AS210558 1337 Services GmbH
Registrant
1337 Services GmbH
City
Amsterdam
Postal code
1012 AB
Country
NL — Netherlands 🇳🇱
First indexed
2025-04-09 08:06:38
Last updated
2026-09-05 16:15:50