49.228.97.188
Classification: Malicious
49.228.97.188 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-05. Network: AS133481 Ais Fibre.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.net.ua | 2026-02-10 12:41:25 | 2026-09-05 16:21:42 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:23:41 | 2026-09-04 16:23:41 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-03-18 13:35:21 | 2026-03-18 13:35:21 | anomalous-activity | |
| Malicious Host | AbuseIPDB | 2026-01-23 03:10:14 | 2026-03-13 18:11:22 | compromised malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-01-23 08:48:52 | 2026-01-28 07:55:36 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-01-23 03:24:04 | 2026-01-28 06:56:18 | malicious-activity | |
| SSH Attacker | Blocklist.de | 2026-01-25 03:22:28 | 2026-01-25 03:22:28 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-01-22 07:37:07 | 2026-01-23 03:23:16 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-01-22 07:37:07 | 2026-01-23 03:23:16 | malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-01-23 00:23:00 | 2026-01-23 02:30:34 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-01-23 00:23:00 | 2026-01-23 02:30:34 | anomalous-activity | |
| HTTP Attacker | AbuseIPDB | 2026-01-23 00:23:00 | 2026-01-23 02:30:34 | malicious-activity | |
| Hacking | AbuseIPDB | 2026-01-22 10:25:23 | 2026-01-23 02:30:34 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-01-22 08:50:30 | 2026-01-23 02:30:34 | anomalous-activity | |
| Phishing | AbuseIPDB | 2026-01-22 15:33:46 | 2026-01-22 15:33:46 | malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-01-22 15:33:46 | 2026-01-22 15:33:46 | malicious-activity | |
| IMAP Attacker | AbuseIPDB | 2026-01-22 15:33:46 | 2026-01-22 15:33:46 | malicious-activity |
Tags
apache ddos rfi attacker login bruteforce bot joomla wordpress ssh abuseWhois information
- AS name
- AS133481 Ais Fibre
- Registrant
- Ais Fibre
- City
- Bangkok
- Postal code
- 10200
- Country
- TH — Thailand 🇹🇭
- First indexed
- 2026-01-23 03:24:04
- Last updated
- 2026-09-05 16:21:42