Threat LevelMEDIUM38/1001 rule type
1 incident on record · confirmed on global blocklist · last seen 18d ago · Tor exit node
| PTR | pd9e15f0c.dip0.t-ipconnect.de |
| Org / ASN | Deutsche Telekom AG |
| Country | 🇩🇪 Germany |
| City | March, Baden-Wurttemberg |
| Timezone | Europe/Berlin |
Attack Analysis
IDS: Tor Exit Node
This IP is a known Tor network exit node. Tor anonymizes user traffic by routing it through a series of relays; exit nodes are the final hop where traffic re-enters the public internet. While Tor has legitimate privacy uses, it is heavily abused for anonymous attacks, credential stuffing, and fraud — as the real attacker IP is concealed behind the exit node.
Reports (1)
| Date | Severity | Description |
|---|---|---|
| 12 Sep 2026 - 05:16 | high | IDS: Tor exit node — known anonymization network — ET TOR Known Tor Relay/Router (Not Exit) Node Traffic group 411 |
EagleEye Intelligence