IP-Adresse

81.192.46.29

IPv4 Öffentlich
MA MA
AS6713
Itissalat Al-MAGHRIB
713 Reports
Diese IP-Adresse steht auf der Blacklist Bedrohung mit hoher Einstufung – Blockierung empfohlen
10/10 Bedrohung
72% Selbstvertrauen
713 Reports

Analyse von Threat Intelligence

KI-gestützte Sicherheitsbewertung auf der Grundlage aggregierter Bedrohungsdaten

Top 10% High Threat
MA
MA Standort
Itissalat Al-MAGHRIB ASN 6713
713 Reports
Honeypot Datenquelle

Maximum Danger

IP address 81.192.46.29, registered in Morocco and operated by Itissalat Al-MAGHRIB, presents a severe and active threat with a 10/10 threat level backed by 698 total abuse reports from automated honeypot sensors. The address has demonstrated sustained SSH brute-force attack behaviour over an eight-month observation window spanning September 2025 through May 2026, with an activity frequency rating of 8 out of 10 and a 77 percent detection confidence score.

The evidence base for this assessment draws from 20 distinct automated honeypot sensors, which collectively logged 698 reports across three threat categories: SSH activity dominating at 18 reports, general hacking attempts at 5 reports, and exploited-host indicators at 3 reports. Suricata intrusion-detection systems flagged repeated SSH sessions on expected ports, while fail2ban tools recorded multiple brute-force violations against SSH services. The network belongs to Moroccan telecom operator Itissalat Al-MAGHRIB under ASN AS6713, and the address is flagged as an exploited host in recent reports, indicating the infrastructure itself may be compromised and operating under attacker control without the owner's knowledge.

SSH brute-force attacks systematically attempt to gain unauthorised server access by cycling through credential combinations, exploiting weak or default passwords. The concrete risk to any exposed SSH service includes complete server compromise, data exfiltration, lateral movement into internal networks, and enrolment of the target system into botnets. The exploited-host classification suggests this address may simultaneously be both an attacker platform and a victim, amplifying its potential for delivering secondary threats or serving as a pivot point for further intrusion campaigns.

Defensive measures for exposed services include implementing key-based authentication exclusively and disabling password-based SSH login entirely. Administrators should configure fail2ban or equivalent rate-limiting tools to auto-block repeated authentication failures, move SSH services to non-standard ports to reduce automated scanning exposure, and disable direct root login. Network operators who observe this address targeting their infrastructure should consider blocking it at the firewall level and notifying the Moroccan ISP to report the compromised or abusive customer account under their acceptable-use policy.

Bedrohlicher als „94“ % der überwachten IP-Adressen

Threat Categories

SSH 28
Hacking 5
Exploited Host 3
Brute-Force 1

Technische Details

SSH attacks attempt to gain server access through password guessing or exploitation of SSH vulnerabilities.

Empfohlene Abhilfemaßnahmen

Use key-based authentication, change default ports, implement fail2ban, and disable root login.

Verhaltensanalyse

Aktivitätsmuster: Consistent Activity

Steady malicious activity over 2 weeks indicates persistent threat actor operations.

Erstmals beobachtet 13. Juli 2026
Letzte Aktivität 28. Juli 2026
Aktuell (7 Tage) 0 Vorfälle

High-Risk Network Association

This IP belongs to a network (ASN 6713) with elevated threat levels. The ISP Itissalat Al-MAGHRIB hosts multiple reported malicious addresses, suggesting systemic security issues or permissive policies.

Network-wide patterns may indicate this is part of a larger malicious infrastructure.

Sicherheitsempfehlungen

Long-term blocking recommended.

Diese Analyse wird automatisch aus aggregierten, anonymisierten Threat Intelligence-Daten generiert. Es werden keine personenbezogenen Daten angezeigt oder gespeichert. Die Genauigkeit der Auswertung hängt vom Umfang und der Vielfalt der verfügbaren Daten ab.

Reputation Summary

Gefahrenstufe 10/10 Critical
Critical
Häufigkeit der Aktivitäten 2/10 Very Low
Confidence Score 69% High Confidence

Confidence History

21. Mai 2026 - 28. Juli 2026
72% Aktuell
Stable Trend

Der Confidence Score gibt die Zuverlässigkeit der Bedrohungsbewertung auf der Grundlage der Anzahl und der Qualität der Reports an.

Sicherheitsreports (30)

Datum Kategorien Quelle Selbstvertrauen
Brute-Force SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Hacking Honeypot x2 75%
Exploited Host Honeypot 75%
Hacking SSH Honeypot x2 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot 75%
SSH Honeypot x2 75%
SSH Honeypot 75%
SSH Honeypot 75%
Exploited Host Hacking SSH Honeypot x3 75%
Hacking Honeypot 75%
Exploited Host SSH Honeypot x2 75%
Hacking SSH Honeypot x2 75%
SSH Honeypot 75%

Technische Details

Grundlegende Informationen

IP-Adresse
81.192.46.29
IP-Version
IPv4
Netzwerktyp
Öffentlich
Tor-Netzwerk
Nein
Netzwerkklasse
Class A

Geolokalisierung

Land
MA MA
ASN
AS6713
ISP
Itissalat Al-MAGHRIB

DNS-Informationen

Reverse DNS
adsl-29-46-192-81.adsl.iam.net.ma
PTR-Eintrag
Ja
Verbindungstyp
Dynamisch

Statistiken

Gesamtzahl der Reports
713
Erstmals gemeldet
28 Sep. 2025
Zuletzt gemeldet
28 Juli 2026, 15:47

Netzwerk-Reputation

Analyse des gesamten Netzwerks (ASN), zu dem diese IP-Adresse gehört, um Informationen zum Hosting-Anbieter und zu netzwerkweiten Bedrohungsmustern zu liefern.

Netzwerkidentität

AS6713
Itissalat Al-MAGHRIB
MA MA

Bewertung von Netzwerkbedrohungen

7/10
Dieses Netzwerk weist ein mäßiges Bedrohungsniveau auf, wobei einige Muster böswilliger Aktivitäten zu beobachten sind.

Netzwerkstatistiken

37
Gesamtzahl der überwachten IP-Adressen
1,336
Gesamtzahl der Reports
36.1
Reports pro IP-Adresse

Netzwerkkontext

Diese IP-Adresse gehört zu Itissalat Al-MAGHRIB (AS 6713), das in unserem Überwachungssystem 37 IP-Adressen verwaltet. Von diesen wurden 1,336 wegen verdächtiger Aktivitäten gemeldet, was zu einer netzwerkweiten Gefahrenstufe von 7 /10 geführt hat.

Netzwerkwarnung: In diesem Netzwerk besteht eine erhöhte Sicherheitsbedrohung. Seien Sie vorsichtig, wenn Sie mit IP-Adressen aus diesem ASN interagieren.

Vergleichende Analyse

Wie sich diese IP-Adresse im Vergleich zu anderen in unserer Threat Intelligence-Datenbank darstellt

94 %

Globales Bedrohungsranking

Diese IP-Adresse stellt von allen IP-Adressen in unserer Datenbank die größte Bedrohung dar: 94 %.

Die gefährlichsten 10 %

Globaler Vergleich

Im Vergleich zu den weltweit gemeldeten IP-Adressen auf 312.380

Gefahrenstufe 10/10 avg: 6,0 ++
Gesamtzahl der Reports 713 avg: 18 ++

Netzwerkvergleich

Im Vergleich zu den IP-Adressen unter 46 im ASN 6713

Gefahrenstufe 10/10 Netzwerk-Durchschnitt: 6,8 +
Gesamtzahl der Reports 713 Netzwerk-Durchschnitt: 35 ++
Der Netzwerk-Itissalat Al-MAGHRIB hat eine Gesamtbedrohungsstufe von 7 /10

Geografischer Vergleich

Im Vergleich zu den IP-Adressen unter 1.001 in MA

Gefahrenstufe 10/10 Landesdurchschnitt: 5,9 ++
Gesamtzahl der Reports 713 Landesdurchschnitt: 4 ++
Kennzahlen:
++ Deutlich höher + Höher = Ähnlich - Nach unten -- Deutlich niedriger

Geografische Verteilung der Bedrohungen

292.711 Weltweit erfasste Sicherheitsvorfälle • In den letzten 24 Stunden: 17.660 Protokolle

FEED

Die größten Bedrohungsquellen

  1. 01
    US
    United States US
    65.787 22.5%
  2. 02
    IN
    India IN
    49.120 16.8%
  3. 03
    CN
    China CN
    35.633 12.2%
  4. 04
    BR
    Brazil BR
    15.556 5.3%
  5. 05
    DE
    Germany DE
    10.500 3.6%
  6. 06
    PK
    Pakistan PK
    8.479 2.9%
  7. 07
    ID
    Indonesia ID
    8.404 2.9%
  8. 08
    SG
    Singapore SG
    8.312 2.8%
  9. 09
    RU
    Russia RU
    6.394 2.2%
  10. 10
    NL
    Netherlands NL
    6.295 2.2%

+40 weitere Länder

GEFAHRENSTUFE
NIEDRIG MED HOCH

Geografische Daten werden aggregiert und anonymisiert. Es werden keine personenbezogenen Daten angezeigt.

Karte: simplemaps.com (MIT License)

Verwandte IPs

Weitere IP-Adressen, die aufgrund von Netzwerk- oder Verhaltensähnlichkeiten mit dieser Adresse in Verbindung stehen

IP-Adressen desselben Netzbetreibers aus demselben autonomen System (AS).

20 Verwandte IPs
8.9/10 Durchschnittliche Bedrohung
74% Durchschnittliche Konfidenz
19 Hohe Bedrohung
Risikoreiches Netzwerk: Die Mehrheit der zugehörigen IP-Adressen ist markiert
102.54.246.130 10/10
Selbstvertrauen 98%
Reports 13
Standort MA MA
81.192.135.9 10/10
Selbstvertrauen 94%
Reports 69
Standort MA MA
154.144.225.226 10/10
Selbstvertrauen 94%
Reports 25
Standort MA MA
196.92.7.249 10/10
Selbstvertrauen 94%
Reports 23
Standort MA MA
196.92.7.247 10/10
Selbstvertrauen 94%
Reports 19
Standort MA MA
196.92.7.246 10/10
Selbstvertrauen 94%
Reports 19
Standort MA MA
102.50.250.77 8/10
Selbstvertrauen 89%
Reports 13
Standort MA MA
81.192.46.49 10/10
Selbstvertrauen 88%
Reports 142
Standort MA MA
160.174.129.232 10/10
Selbstvertrauen 88%
Reports 98
Standort MA MA
81.192.46.32 10/10
Selbstvertrauen 87%
Reports 115
Standort MA MA
81.192.46.45 10/10
Selbstvertrauen 85%
Reports 125
Standort MA MA
81.192.46.36 10/10
Selbstvertrauen 76%
Reports 83
Standort MA MA
154.144.253.236 10/10
Selbstvertrauen 74%
Reports 9
Standort MA MA
81.192.46.35 10/10
Selbstvertrauen 70%
Reports 79
Standort MA MA
81.192.138.65 10/10
Selbstvertrauen 51%
Reports 4
Standort MA MA
154.144.224.159 8/10
Selbstvertrauen 46%
Reports 3
Standort MA MA
154.146.240.123 8/10
Selbstvertrauen 40%
Reports 3
Standort MA MA
160.174.130.238 7/10
Selbstvertrauen 40%
Reports 2
Standort MA MA
196.69.46.218 7/10
Selbstvertrauen 40%
Reports 2
Standort MA MA
196.70.254.249 0/10
Selbstvertrauen 38%
Reports 2
Standort MA MA

IP-Adressen aus demselben Subnetzbereich, vermutlich aus demselben Netzwerksegment.

5 Verwandte IPs
10/10 Durchschnittliche Bedrohung
81% Durchschnittliche Konfidenz
5 Hohe Bedrohung
Risikoreiches Netzwerk: Die Mehrheit der zugehörigen IP-Adressen ist markiert

IP-Adressen aus demselben Land mit ähnlichen Bedrohungsprofilen.

15 Verwandte IPs
9.5/10 Durchschnittliche Bedrohung
92% Durchschnittliche Konfidenz
15 Hohe Bedrohung
Risikoreiches Netzwerk: Die Mehrheit der zugehörigen IP-Adressen ist markiert

Export- und Firewall Rules

Laden Sie Bedrohungsdaten herunter oder erstellen Sie Firewall Rules, um diese IP-Adresse zu blockieren

JSON-Bericht

Strukturiertes Datenformat für die Integration mit Sicherheitstools und SIEM-Systemen.

{
    "ip_address": "81.192.46.29",
    "threat_level": 10,
    "confidence_score": 72,
    "total_reports": 713,
    "country_code": "MA",
    "isp_name": "Itissalat Al-MAGHRIB",
    "asn": "6713",
    "first_reported": "2025-09-28 06:17:51",
    "last_reported": "2026-07-28 15:47:44",
    "exported_at": "2026-08-06T18:50:22+02:00",
    "source": "https://reportedip.com/ip/81.192.46.29/"
}

GDPR Compliant: Die Exporte enthalten ausschließlich IP-bezogene Bedrohungsdaten. Es sind weder personenbezogene Daten noch Angaben zum Melder enthalten.