← Back to Dashboard

88.205.172.170 Threat Intelligence Report

Risk Level: CRITICAL — 428 abuse reports from 19 sources

Threat Intelligence Summary

IP address 88.205.172.170 has been flagged in 428 abuse reports across 19 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is attacks, along with brute force, bruteforce, malware c2, scanning, severe abuse, ssh-bruteforce, ssh brute force, ssh bruteforce, unknown, web attack, web brute force.

This IP is geolocated in Russia and belongs to the network Rostelecom (AS12389). Reports span from 2024-07-05 to 2026-03-29.

Assessment: With 428 abuse reports, 88.205.172.170 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. The IP has been observed conducting automated SSH login attempts against internet-facing servers, a technique commonly used to gain unauthorized access to systems.

Data aggregated from 19 independent threat intelligence sources.

Geolocation

Country Russia
ISP/ASN Rostelecom
Timezone Europe/Moscow

Threat Status

Overall Status Critical
Threat Score 100.0%
Report Count 428
Sources 19
First Seen 2024-07-05
Last Seen 2026-03-29

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

Russia Threat Intelligence → AS12389 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: