81.17.18.198

Classification: Whitelisted

81.17.18.198 is a whitelisted (trusted) IP address. Reported by 11 threat sources, last seen 2026-07-26. Network: AS51852 CLIENT1060.

Current activity

  • Hosting provider — Shared hosting infrastructure.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Hosting Provider Maltiverse 2026-07-26 17:18:21 2026-07-26 17:18:21 benign hosting
Mail Spammer Barracuda 2025-12-14 00:37:20 2025-12-14 00:37:20
banjori Maltiverse Research Team 2022-02-24 02:33:31 2022-06-18 14:02:25 malicious-activity
Phishing Phishtank 2020-01-04 09:10:28 2022-05-19 12:20:04 compromised malicious-activity
suppobox Maltiverse Research Team 2022-05-08 00:49:38 2022-05-11 00:48:53 malicious-activity
Malware Hybrid-Analysis 2021-12-05 12:00:47 2021-12-12 14:45:05
Malware.Generic Hybrid-Analysis 2020-10-09 13:30:14 2021-07-29 14:15:48
Generic.Malware Hybrid-Analysis 2020-12-06 13:15:28 2021-04-11 14:06:05
Tesco Bank phishing Antiphishing.com.ar 2021-04-07 13:52:08 2021-04-07 13:52:08
virut Maltiverse Research Team 2020-07-02 01:25:44 2021-04-02 01:12:34 malicious-activity
Malware site Hybrid-Analysis 2021-02-06 21:15:31 2021-03-16 23:45:31
Gen:Variant.Jacard Hybrid-Analysis 2021-03-15 14:00:51 2021-03-15 14:00:51
Malicious Hostname Cyber Threat Coalition 2020-12-16 06:44:12 2021-03-03 16:31:36 malicious-activity
Malicious url Cyber Threat Coalition 2020-12-16 22:23:28 2021-03-02 17:37:41 malicious-activity
Social Engineering Cyber Threat Coalition 2021-01-18 08:43:46 2021-01-18 08:43:46 malicious-activity
Covid19 scam Cyber Threat Coalition 2020-04-16 11:23:06 2020-12-13 14:18:15 malicious-activity
uber phishing Antiphishing.com.ar 2020-02-21 01:46:03 2020-08-06 14:34:20
Covid19 scam DomainTools 2020-04-19 19:00:43 2020-07-07 18:56:52 malicious-activity
IOC_19052020 CronUp Threat Intel 2020-05-20 03:00:07 2020-05-20 03:00:07
Malicious domain Telefonica Peru 2020-04-09 05:06:57 2020-04-09 05:07:32
Suppobox Bambernek 2019-11-08 00:21:46 2019-11-08 00:21:46
Vawtrak Bambernek 2019-11-04 06:59:07 2019-11-04 06:59:07
banjori Bambernek 2019-10-05 00:34:48 2019-10-05 00:34:48

Tags

c&c c2 dga phishing malware banjori vawtrak suppobox covid19 coronavirus scam

Whois information

AS name
AS51852 CLIENT1060
AS registry
ripencc
AS date
2011-08-29 00:00:00
AS CIDR
81.17.16.0/20
Registrant
CLIENT1060
City
Zurich
Postal code
8032
Country
CH — Switzerland 🇨🇭
First indexed
2019-10-05 00:34:48
Last updated
2026-07-26 17:18:21

Malicious IPs in the same CIDR

81.17.28.95 81.17.16.235 81.17.18.50 81.17.28.117