91.92.47.252

Classification: Malicious

91.92.47.252 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-02. Network: AS197170 https://ip.me/static/geofeeds/91.92.44.0-22.csv.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-07-17 11:07:44 2026-09-02 09:08:12 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-07-17 11:07:42 2026-09-02 09:08:10 malicious-activity
Malicious Host CIArmy 2026-07-16 20:02:47 2026-08-27 20:02:15 attacker malicious-activity
VPN IPWhois.io 2026-07-16 20:04:07 2026-07-16 20:04:07 anonymization vpn

Whois information

AS name
AS197170 https://ip.me/static/geofeeds/91.92.44.0-22.csv
Registrant
https://ip.me/static/geofeeds/91.92.44.0-22.csv
City
Sofia
Postal code
1000
Country
BG — Bulgaria 🇧🇬
First indexed
2026-07-16 20:02:47
Last updated
2026-09-02 09:08:17