IP Address

77.90.185.245

IPv4 Public
DE DE
AS215476
Inside Network LTD
158 Reports
This IP is on the Blacklist High confidence threat - blocking recommended
8/10 Threat
85% Confidence
158 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Above Average Risk
DE
DE Location
Inside Network LTD ASN 215476
158 Reports
Mixed Data Source

Significant Threat

IP 77.90.185.245 is a high-risk address operated by Inside Network LTD (AS215476) in Germany that has been linked to WordPress login brute-force attacks and broader authentication brute-force campaigns, with 158 abuse reports and a threat level of 8/10 indicating credible risk to any publicly accessible web authentication system.

The address was first reported in November 2025 and remained active through January 2026, representing approximately two months of sustained malicious activity. Of the 158 total reports, 20 specifically document WordPress login brute-force attempts while 13 detail general brute-force activity against authentication systems. Detection came from 7 automated honeypot sensors and 13 community reports, indicating broad coverage across both automated and human-reported sighting networks. With a confidence score of 85%, the data strongly supports the classification of this IP as an active threat actor within the scanned timeframe.

WordPress login brute-force attacks systematically target web-based authentication endpoints by cycling through credential combinations in an attempt to gain unauthorized administrative access. Automated honeypot sensors detected the characteristic "wordpress-escalation" pattern consistent with tools designed to identify and exploit weak WordPress admin credentials. The concrete risk to an exposed site is unauthorized admin panel access, which can lead to website defacement, data exfiltration, malware distribution infrastructure, or further lateral movement within connected systems.

Site operators should block or rate-limit IP 77.90.185.245 at the firewall or WAF level to immediately sever the attacking connection. Implementing multi-factor authentication on all administrative accounts and relocating the WordPress login URL to a non-standard path substantially raises the difficulty for automated credential-testing tools. Deploying or configuring fail2ban with WordPress-specific filter rules will automatically ban repeat offenders matching the observed attack signatures. Finally, continuous monitoring of authentication logs for high-volume failed-login events from this address enables rapid incident response.

More threatening than 80% of monitored IPs

Threat Categories

WP Login Brute Force 30
Brute-Force 22

Moderate Network Risk

The network hosting this IP (ASN 215476, operated by Inside Network LTD) shows moderate threat indicators. Some concerning activity has been detected from neighboring addresses.

Consider the network context when assessing this individual IP.

Security Recommendations

Continue monitoring for emerging patterns.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 8/10 High
Critical
Activity Frequency 1/10 Very Low
Confidence Score 51% High Confidence

Confidence History

27. Dec 2025 - 7. Jan 2026
85% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Honeypot 75%
WP Login Brute Force Brute-Force Community 75%
WP Login Brute Force Brute-Force Community 75%

Technical Details

Basic Information

IP Address
77.90.185.245
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class A

Geolocation

Country
DE DE
ASN
AS215476
ISP
Inside Network LTD

DNS Information

Reverse DNS
None
PTR Record
No
Connection Type
Static

Statistics

Total Reports
158
First Reported
22 Nov 2025
Last Reported
7 Jan 2026, 10:46

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS215476
Inside Network LTD
DE DE

Network Threat Assessment

4/10
This network has low threat indicators with minimal suspicious activity.

Network Statistics

39
Total IPs Monitored
50,413
Total Reports
1292.6
Reports per IP

Network Context

This IP address belongs to Inside Network LTD (AS215476), which manages 39 IP addresses in our monitoring system. Out of these, 50,413 have been reported for suspicious activities, resulting in a network-wide threat level of 4/10.

Network notice: This network shows some suspicious activity patterns. Monitor interactions with IPs from this ASN.

Comparative Analysis

How this IP compares to others in our threat intelligence database

80 %

Global Threat Ranking

This IP is more threatening than 80% of all IPs in our database.

High Threat Percentile

Global Comparison

Compared against 199,560 reported IPs worldwide

Threat Level 8/10 avg: 5.3 ++
Total Reports 158 avg: 23 ++

Network Comparison

Compared against 39 IPs in ASN 215476

Threat Level 8/10 network avg: 8.7 =
Total Reports 158 network avg: 1,310 --
Network Inside Network LTD has overall threat level 4/10

Geographic Comparison

Compared against 7,143 IPs in DE

Threat Level 8/10 country avg: 5.8 +
Total Reports 158 country avg: 61 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

187,269 threat incidents tracked globally • Last 24h: 19,041 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US
    38,456 20.5%
  2. 02
    IN
    India IN
    29,090 15.5%
  3. 03
    CN
    China CN
    26,026 13.9%
  4. 04
    BR
    Brazil BR
    10,256 5.5%
  5. 05
    DE
    Germany DE THIS IP
    7,143 3.8%
  6. 06
    SG
    Singapore SG
    6,476 3.5%
  7. 07
    ID
    Indonesia ID
    5,543 3%
  8. 08
    RU
    Russia RU
    4,703 2.5%
  9. 09
    PK
    Pakistan PK
    4,670 2.5%
  10. 10
    NL
    Netherlands NL
    4,357 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

IPs from the same Autonomous System (AS) network provider.

20 Related IPs
8.9/10 Avg Threat
86% Avg Confidence
20 High Threat
High-risk network: Majority of related IPs are flagged

IPs from the same subnet range, likely same network segment.

20 Related IPs
9/10 Avg Threat
89% Avg Confidence
20 High Threat
High-risk network: Majority of related IPs are flagged

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "77.90.185.245",
    "threat_level": 8,
    "confidence_score": 85,
    "total_reports": 158,
    "country_code": "DE",
    "isp_name": "Inside Network LTD",
    "asn": "215476",
    "first_reported": "2025-11-22 23:32:46",
    "last_reported": "2026-01-07 10:46:09",
    "exported_at": "2026-06-09T09:44:19+02:00",
    "source": "https://reportedip.de/ip/77.90.185.245/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.