136.243.156.120

Classification: Whitelisted

136.243.156.120 is a whitelisted (trusted) IP address. Reported by 10 threat sources, last seen 2026-07-20. Network: AS24940 Hetzner Online GmbH.

Current activity

  • Open proxy — Provides anonymization that can hide an attacker.
  • Hosting provider — Shared hosting infrastructure.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Proxy IPWhois.io 2025-10-08 17:20:04 2026-07-20 15:50:34 anonymization proxy
Hosting Provider Maltiverse 2026-06-16 13:05:54 2026-06-16 13:05:54 benign
Proxy FireHOL 2024-04-11 15:32:41 2025-10-07 07:55:15 anonymization
unidentified_001 ThreatFox Abuse.ch 2024-03-02 15:17:07 2024-03-04 14:18:06 malicious-activity
Gen:Variant.Zusy Hybrid-Analysis 2021-12-19 05:00:21 2021-12-19 05:00:27
Phishing Maltiverse 2020-12-12 23:47:31 2021-03-27 12:41:00 compromised
Social Engineering Maltiverse 2020-12-12 23:47:31 2021-03-27 12:41:00 malicious-activity
Gen:Variant.Bulz Hybrid-Analysis 2021-03-15 13:00:31 2021-03-15 13:00:31
Phishing site Hybrid-Analysis 2021-03-09 15:30:14 2021-03-09 16:01:16
Malicious Hostname Cyber Threat Coalition 2020-12-16 04:47:46 2021-03-03 22:24:11 malicious-activity
Malicious Host HoneyDB 2021-02-08 00:00:00 2021-02-08 00:00:00 malicious-activity
Phishing Facebook Phishtank 2020-12-11 16:20:10 2021-01-31 11:52:47 compromised malicious-activity
Social Engineering Phishtank 2020-12-14 10:59:28 2021-01-31 11:52:47 malicious-activity
Covid19 scam Cyber Threat Coalition 2020-11-20 21:59:28 2020-12-13 07:06:48 malicious-activity
Phishing Facebook, Inc. OpenPhish 2019-05-07 02:58:09 2020-09-28 05:27:17
Social Engineering OpenPhish 2019-12-28 02:08:26 2020-09-28 05:27:17 malicious-activity
Phishing Generic/Spear Phishing OpenPhish 2020-05-17 03:58:52 2020-09-21 07:46:25
Generic.Malware Hybrid-Analysis 2019-12-10 11:15:04 2020-08-07 08:00:17
Phishing Netflix Inc. OpenPhish 2020-05-15 04:51:34 2020-05-15 04:51:34
Phishing Phishtank 2019-12-14 02:19:57 2019-12-15 02:26:43
Facebook phishing Antiphishing.com.ar 2019-12-12 08:07:51 2019-12-12 08:07:54
evasive Maltiverse 2018-01-07 11:46:17 2018-01-07 11:46:17

Tags

evasive phishing sector:social networking facebook, inc. sector:online services netflix inc. generic/spear phishing covid19 coronavirus scam port:53252 anonymization

Whois information

AS name
AS24940 Hetzner Online GmbH
AS registry
ripencc
AS date
2004-04-14 00:00:00
AS CIDR
136.243.0.0/16
Registrant
Hetzner Online GmbH
City
Falkenstein/Vogtl.
Postal code
08223
Country
DE — Germany 🇩🇪
First indexed
2018-01-07 11:46:17
Last updated
2026-07-20 15:50:35

Malicious IPs in the same CIDR

136.243.147.89 136.243.153.169 136.243.92.194 136.243.154.74 136.243.176.179 136.243.220.212 136.243.3.194 136.243.228.195 136.243.176.166 136.243.174.159 136.243.176.148 136.243.89.124 136.243.228.181 136.243.220.213 136.243.220.214 136.243.220.209 136.243.228.178 136.243.151.111 136.243.61.201 136.243.228.194 136.243.33.99