138.201.126.72

Classification: Malicious

138.201.126.72 is a malicious IP address. Reported by 2 threat sources, last seen 2026-08-19. Network: AS24940 Hetzner Online GmbH.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Unknown malware ThreatFox Abuse.ch 2026-08-19 06:20:17 2026-08-19 06:25:05 malicious-activity
Phishing site Hybrid-Analysis 2021-09-28 00:00:14 2021-09-28 00:00:14

Tags

port:443 epsteinclient

Whois information

AS name
AS24940 Hetzner Online GmbH
AS registry
ripencc
AS date
1990-05-23 00:00:00
AS CIDR
138.201.0.0/16
Registrant
Hetzner Online GmbH
City
Falkenstein/Vogtl.
Postal code
08223
Country
DE — Germany 🇩🇪
First indexed
2021-09-28 00:00:14
Last updated
2026-08-19 10:38:50

Malicious IPs in the same CIDR

138.201.196.252 138.201.51.181 138.201.121.103 138.201.225.177 138.201.125.121 138.201.121.34 138.201.126.243 138.201.133.126 138.201.19.25 138.201.58.21 138.201.105.101 138.201.78.61 138.201.118.8 138.201.126.72 138.201.157.49