135.136.39.69

Classification: Malicious

135.136.39.69 is a malicious IP address. Linked to Kinsing malware. Reported by 4 threat sources, last seen 2026-09-01. Network: AS9009 M247 LTD Zurich.

Current activity

  • Command & Control server โ€” Used by cybercriminals to control victim computers.
  • Known attacker โ€” Seen launching attacks over the Internet.
  • VPN node โ€” Provides anonymization that can hide an attacker.

MITRE ATT&CK associations

Malware families: KINSING (S0599)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
HTTP Spammer StopForumSpam.com 2026-05-08 17:15:19 2026-09-01 07:22:08 attacker malicious-activity
HTTP bot Blocklist.de 2026-07-25 08:00:16 2026-07-25 08:00:16 attacker malicious-activity
VPN IPWhois.io 2026-07-18 22:08:31 2026-07-18 22:08:31 anonymization vpn
Bruteforce login attacker Blocklist.de 2026-07-04 09:00:12 2026-07-05 09:00:11 attacker malicious-activity
HTTP Attacker Blocklist.de 2026-07-04 07:00:15 2026-07-05 07:00:12 attacker malicious-activity
Kinsing ThreatFox Abuse.ch 2026-06-25 08:49:58 2026-06-25 09:25:04 botnet malicious-activity S0599 Kinsing

Tags

bot abuse kinsing h2miner port:2375 chroot docker-api apache ddos rfi attacker login bruteforce joomla wordpress spam

Whois information

AS name
AS9009 M247 LTD Zurich
Registrant
M247 LTD Zurich
City
Zurich
Postal code
8032
Country
CH โ€” Switzerland ๐Ÿ‡จ๐Ÿ‡ญ
First indexed
2026-05-08 17:15:19
Last updated
2026-09-01 07:22:56