45.148.10.121
Amsterdam, Netherlands · DMZHOST · Data Center
Fraud Score
100
critical risk
What we know about 45.148.10.121.
VPN
Clean
Proxy
Clean
Tor
Detected
Relay
Clean
Datacenter
Detected
Mobile
Clean
Active command & control (C2) server used to coordinate malware operations. Identified as part of a botnet network. Performing SSH brute force attacks against servers. VoIP/SIP fraud and telephony abuse. Persistent high-severity threat, confirmed repeatedly by our honeypot sensors and community reports. Also identified as a Tor exit node. Located in a high-risk network neighborhood where 95% of the /24 subnet is flagged for abuse - this level of concentration typically indicates compromised infrastructure or a malicious hosting operation
Open ports
No reports yet.
Nobody has reported 45.148.10.121 yet. If it attacked you, be the first — every report feeds the free, open database that everyone can use.
45.148.10.121, answered.
Is 45.148.10.121 a VPN, proxy, or Tor node?+
Yes. ffraud classifies 45.148.10.121 as a Tor exit node. Connection type: Data Center.
Is 45.148.10.121 safe or dangerous?+
ffraud scores 45.148.10.121 at 100/100 (critical risk) because Active command & control (C2) server used to coordinate malware operations. Identified as part of a botnet network. Performing SSH brute force attacks against servers. VoIP/SIP fraud and telephony abuse. Persistent high-severity threat, confirmed repeatedly by our honeypot sensors and community reports. Also identified as a Tor exit node. Located in a high-risk network neighborhood where 95% of the /24 subnet is flagged for abuse - this level of concentration typically indicates compromised infrastructure or a malicious hosting operation We recommend blocking or challenging it.
Who owns 45.148.10.121?+
45.148.10.121 is operated by DMZHOST (AS48090), located in Amsterdam, Netherlands.
Why does 45.148.10.121 have a fraud score of 100?+
The score reflects high-confidence signals: Active command & control (C2) server used to coordinate malware operations. Identified as part of a botnet network. Performing SSH brute force attacks against servers. VoIP/SIP fraud and telephony abuse. Persistent high-severity threat, confirmed repeatedly by our honeypot sensors and community reports. Also identified as a Tor exit node. Located in a high-risk network neighborhood where 95% of the /24 subnet is flagged for abuse - this level of concentration typically indicates compromised infrastructure or a malicious hosting operation ffraud only lists an IP once it is independently confirmed at least twice, by our honeypot sensors and community reports.
One IP at a time. Instant.
Result
45.148.10.121
Amsterdam, Netherlands · DMZHOST · Data Center