138.226.239.234
Classification: Malicious
138.226.239.234 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-13. Network: AS213474 Vlad Cojuhari.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
- IoT threat — Seen attacking IoT devices.
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Unauthorized scanning of hosts | Blocklist.net.ua | 2026-09-10 16:09:09 | 2026-09-13 16:52:13 | attacker malicious-activity | |
| ET COMPROMISED Known Compromised or Hostile Host Traffic UDP | Emerging Threats | 2026-09-07 10:01:11 | 2026-09-13 10:01:12 | compromised malicious-activity | |
| ET COMPROMISED Known Compromised or Hostile Host Traffic TCP | Emerging Threats | 2026-09-07 10:01:10 | 2026-09-13 10:01:11 | compromised malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-11 16:55:07 | 2026-09-11 16:55:07 | attacker malicious-activity | |
| SSH Attacker | Blocklist.de | 2026-09-05 14:00:15 | 2026-09-10 14:00:24 | attacker malicious-activity | |
| Malicious Host | HoneyDB | 2026-09-10 00:00:00 | 2026-09-10 00:00:00 | attacker malicious-activity | |
| SSH Attacker | Blocklist.net.ua | 2026-09-05 16:52:20 | 2026-09-05 16:52:20 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-09-04 06:14:01 | 2026-09-05 13:57:40 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-09-04 06:14:01 | 2026-09-05 13:57:40 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-09-04 06:14:01 | 2026-09-05 13:53:01 | anomalous-activity attacker malicious-activity reconnaissance | |
| Malicious Host | AbuseIPDB | 2026-09-04 14:31:18 | 2026-09-05 13:44:57 | attacker compromised malicious-activity | |
| Hacking | AbuseIPDB | 2026-09-04 14:28:35 | 2026-09-05 13:36:33 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-09-04 14:31:18 | 2026-09-05 10:01:59 | attacker malicious-activity | |
| Phishing | AbuseIPDB | 2026-09-04 15:12:32 | 2026-09-05 06:31:53 | malicious-activity phishing | |
| Mail Spammer | AbuseIPDB | 2026-09-04 14:44:32 | 2026-09-05 06:31:53 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-09-04 14:28:35 | 2026-09-05 02:03:11 | anomalous-activity attacker malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-09-04 14:39:04 | 2026-09-05 00:06:59 | attacker malicious-activity | |
| IoT Attacker | AbuseIPDB | 2026-09-04 18:00:03 | 2026-09-04 18:00:03 | iot malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-09-04 14:44:32 | 2026-09-04 17:04:48 | attacker malicious-activity | |
| VPN | AbuseIPDB | 2026-09-04 16:14:53 | 2026-09-04 16:14:53 | anonymization vpn | |
| IMAP Attacker | AbuseIPDB | 2026-09-04 15:12:32 | 2026-09-04 15:12:32 | attacker malicious-activity |
Tags
ssh bruteforce bot abuseWhois information
- AS name
- AS213474 Vlad Cojuhari
- Registrant
- Vlad Cojuhari
- City
- Amsterdam
- Postal code
- 1012 AB
- Country
- NL — Netherlands 🇳🇱
- First indexed
- 2026-09-05 14:00:15
- Last updated
- 2026-09-13 16:52:13