82.192.94.125
Classification: Suspicious
82.192.94.125 is a suspicious IP address. Linked to Tor malware. Reported by 5 threat sources, last seen 2025-12-28.
MITRE ATT&CK associations
Malware families: TOR (S0183)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2025-12-28 04:44:35 | 2025-12-28 04:44:35 | ||
| Malware | Hybrid-Analysis | 2021-07-28 10:45:39 | 2021-12-30 14:17:53 | ||
| ET TOR Known Tor Relay/Router (Not Exit) Node TCP Traffic | Emerging Threats | 2019-01-01 08:04:29 | 2021-11-28 05:09:22 | anonymization | |
| Anonymizer | Maltiverse Research Team | 2020-11-21 18:03:49 | 2021-05-23 01:41:40 | anonymizer | |
| Trojan.Cayu | Hybrid-Analysis | 2021-02-12 19:00:52 | 2021-02-12 19:00:52 | ||
| Kryptik.FDEO | Hybrid-Analysis | 2019-05-24 09:45:36 | 2019-05-24 09:45:36 | ||
| Cerber.F.gen | Hybrid-Analysis | 2019-05-08 20:30:07 | 2019-05-08 20:30:08 | ||
| Nemucod.EEY | Hybrid-Analysis | 2019-04-11 04:30:05 | 2019-04-11 04:30:05 | ||
| Tor | Hybrid-Analysis | 2019-03-19 11:30:26 | 2019-03-19 11:30:29 | S0183 Tor | |
| Gen:Variant.Cerbu | Hybrid-Analysis | 2019-02-21 07:00:22 | 2019-02-21 07:00:22 | ||
| Generic.Malware | Hybrid-Analysis | 2019-02-06 18:00:06 | 2019-02-06 18:00:06 | ||
| Anonymizer | Maltiverse | 2018-12-31 08:24:31 | 2018-12-31 08:24:31 |
Tags
tor anonymizerWhois information
- AS name
- AS60781 Leaseweb Netherlands B.V.
- AS registry
- ripencc
- AS date
- 2003-09-22 00:00:00
- AS CIDR
- 82.192.64.0/19
- CIDR
- 82.192.94.96/27
- Registrant
- Leaseweb Netherlands B.V.
- Address
- [email protected]. To ensure proper processing of your abuse notification, please visit the website www.leaseweb.com/abuse for notification requirements. All police and other government agency requests must be sent to [email protected].
- City
- Haarlem
- Postal code
- 2031 WH
- Country
- NL — Netherlands 🇳🇱
- First indexed
- 2018-12-31 08:24:31
- Last updated
- 2025-12-28 04:44:37