← Back to Dashboard

45.9.156.168 Threat Intelligence Report

Risk Level: CRITICAL — 456 abuse reports from 1 source

Threat Intelligence Summary

IP address 45.9.156.168 has been flagged in 456 abuse reports , resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is botnet c2, along with malware c2.

This IP is geolocated in Bulgaria (Sofia) and belongs to the network MAXKO d.o.o. (AS211619). Reports span from 2025-09-24 to 2025-09-25.

Assessment: With 456 abuse reports, 45.9.156.168 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. This IP has been identified as a command-and-control server for botnet infrastructure, meaning it coordinates malicious activity across networks of compromised machines.

Data aggregated from 1 independent threat intelligence sources.

Geolocation

Country Bulgaria
City Sofia
Region Sofia-Capital
ISP/ASN MAXKO d.o.o.
Timezone Europe/Sofia

Threat Status

Overall Status Critical
Threat Score 100.0%
Report Count 456
Sources 1
First Seen 2025-09-24
Last Seen 2025-09-25
AI Analysis

Check IPs automatically with the WAYSCloud API

Free tier: 1,000 lookups/day. Get threat scores, geolocation, and abuse reports via REST API.

Explore the API →

See how we classify and verify threats →

Related Intelligence

Bulgaria Threat Intelligence → AS211619 Network Intelligence → See all top malicious IPs → View latest attacks →
Learn about these threats: