← Back to Dashboard

80.253.25.22 Threat Intelligence Report

Risk Level: LOW — 2 abuse reports from 2 sources

Threat Intelligence Summary

IP address 80.253.25.22 has been flagged in 2 abuse reports across 2 independent threat intelligence sources, resulting in a threat score of 20.3/100 (low risk). The primary activity associated with this IP is aggregated threat, along with rdp bruteforce.

This IP is geolocated in Russia and belongs to the network Joint-stock Company teleport Telecom (AS39153). Reports span from 2026-05-28 to 2026-06-30.

Assessment: Only 2 reports exist for 80.253.25.22, which may represent a false positive, a temporary compromise, or a one-time scanning event. No immediate action is typically required, but this IP should be monitored if it appears in your server logs.

Data aggregated from 2 independent threat intelligence sources.

Geolocation

Country Russia
Timezone Europe/Moscow

Threat Status

Overall Status Low Risk
Threat Score 20.3%
Report Count 2
Sources 2
First Seen 2026-05-28
Last Seen 2026-06-30
AI Analysis

Historical Threat Record

Archived Reports 12
Peak Severity HIGH
History Span 2024-09-05 – 2025-12-05

🔒 The individual historical reports for this IP are part of premium intelligence. Free lookups show the last 90 days of live activity plus this summary.

Unlock full history →

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

Russia Threat Intelligence → AS39153 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: