← Back to Dashboard

202.165.17.196 Threat Intelligence Report

Risk Level: CRITICAL — 306 abuse reports from 16 sources

Threat Intelligence Summary

IP address 202.165.17.196 has been flagged in 306 abuse reports across 16 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is aggregated threat, along with attacks, brute force, bruteforce, malware c2, severe abuse, ssh-bruteforce, ssh brute force, ssh bruteforce, unknown.

This IP is geolocated in Malaysia and belongs to the network TM TECHNOLOGY SERVICES SDN. BHD. (AS18206). Reports span from 2025-04-19 to 2025-12-20.

Assessment: With 306 abuse reports, 202.165.17.196 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. The IP has been observed conducting automated SSH login attempts against internet-facing servers, a technique commonly used to gain unauthorized access to systems.

Data aggregated from 16 independent threat intelligence sources.

Geolocation

Country Malaysia
Timezone Asia/Kuching

Threat Status

Overall Status Critical
Threat Score 100.0%
Report Count 306
Sources 16
First Seen 2025-04-19
Last Seen 2025-12-20

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

Malaysia Threat Intelligence → AS18206 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: