94.182.149.20
Classification: Malicious
94.182.149.20 is a malicious IP address. Reported by 3 threat sources, last seen 2026-08-28. Network: AS213807 Shtl NET DED.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.de | 2026-07-27 14:00:33 | 2026-08-28 14:05:13 | attacker malicious-activity | |
| Malicious Host | HoneyDB | 2026-08-07 00:00:00 | 2026-08-19 00:00:00 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-07-27 00:58:41 | 2026-07-27 13:55:05 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-07-27 00:58:41 | 2026-07-27 13:55:05 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-07-27 01:04:02 | 2026-07-27 05:50:26 | anomalous-activity attacker malicious-activity reconnaissance | |
| Malicious Host | AbuseIPDB | 2026-07-27 05:10:29 | 2026-07-27 05:10:29 | attacker compromised malicious-activity |
Tags
ssh bruteforce botWhois information
- AS name
- AS213807 Shtl NET DED
- Registrant
- Shtl NET DED
- City
- Aftab
- Postal code
- 1463863811
- Country
- IR — Iran, Islamic Republic of 🇮🇷
- First indexed
- 2026-07-27 14:00:33
- Last updated
- 2026-08-28 14:05:17