113.131.200.28
Classification: Malicious
113.131.200.28 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-05. Network: AS9697 Lg Hellovision Corp..
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2025-12-24 17:32:41 | 2026-08-05 11:09:46 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2025-12-24 17:32:32 | 2026-08-05 11:09:44 | malicious-activity | |
| Malicious Host | CIArmy | 2019-01-29 07:38:12 | 2026-08-02 20:02:36 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-07-12 15:30:23 | 2026-06-03 22:45:25 | anomalous-activity | |
| Malicious Host | Alienvault Ip Reputation Database | 2019-01-28 06:56:36 | 2020-12-06 07:01:34 | malicious-activity | |
| Mirai bot | Greynoise | 2019-05-14 00:00:00 | 2019-07-24 00:00:00 |
Tags
mirai bot botnet iot compromised worm attackerWhois information
- AS name
- AS9697 Lg Hellovision Corp.
- AS registry
- apnic
- AS date
- 2008-11-10 00:00:00
- AS CIDR
- 113.131.200.0/21
- CIDR
- 113.130.128.0/17, 113.131.0.0/16
- Registrant
- Lg Hellovision Corp.
- Address
- Jeollanam-do Naju-si Jinheung-gil
- City
- Gijang-gun
- Postal code
- 46065
- Country
- KR — Korea, Republic of 🇰🇷
- Contact email
- [email protected], [email protected], [email protected]
- First indexed
- 2019-01-28 06:56:36
- Last updated
- 2026-08-05 11:10:14
Malicious IPs in the same CIDR
113.131.201.13 113.131.201.12 113.131.200.3 113.131.201.15 113.131.201.4 113.131.200.10 113.131.200.36 113.131.200.12 113.131.201.11 113.131.201.7 113.131.200.24 113.131.200.28