146.70.160.252

Classification: Malicious

146.70.160.252 is a malicious IP address. Reported by 8 threat sources, last seen 2026-09-11. Network: AS9009 M247 LTD Frankfurt Infrastructure.

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Open proxy โ€” Provides anonymization that can hide an attacker.
  • VPN node โ€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Empty reason Blocklist.net.ua 2026-09-04 16:57:24 2026-09-11 16:57:07 attacker malicious-activity
Bruteforce login attacker Blocklist.de 2025-04-20 15:15:49 2026-09-11 09:00:13 attacker malicious-activity
HTTP Attacker Blocklist.de 2025-04-20 14:10:26 2026-09-11 07:00:17 attacker malicious-activity
DDoS Attacker Blocklist.net.ua 2026-01-28 02:29:20 2026-09-05 16:54:11 attacker malicious-activity
VPN IPWhois.io 2025-02-18 10:13:26 2026-08-10 08:32:47 anonymization vpn
HTTP Attacker AbuseIPDB 2025-02-17 21:45:46 2026-08-10 08:31:40 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2025-04-18 18:26:23 2026-08-10 08:31:40 anomalous-activity attacker malicious-activity
Hacking AbuseIPDB 2025-04-18 20:36:28 2026-08-10 08:18:31 attacker malicious-activity
Bruteforce AbuseIPDB 2025-02-20 13:24:14 2026-08-10 08:16:08 attacker malicious-activity
Malicious Host AbuseIPDB 2024-09-15 23:23:39 2026-08-07 17:20:19 attacker compromised malicious-activity
DDoS Attacker AbuseIPDB 2026-03-27 14:05:59 2026-08-06 09:04:28 attacker malicious-activity
HTTP Spammer StopForumSpam.com 2023-07-07 22:31:56 2026-07-21 09:26:37 attacker malicious-activity
SSH Attacker AbuseIPDB 2025-02-20 13:24:14 2026-07-06 23:32:10 attacker malicious-activity
Port Scanner AbuseIPDB 2025-02-27 16:06:42 2026-06-04 23:27:10 anomalous-activity attacker
SQL Injection AbuseIPDB 2025-04-22 08:23:20 2026-06-04 04:59:13 attacker malicious-activity
VPN AbuseIPDB 2026-03-26 07:29:47 2026-03-26 07:29:47 anonymization
Malicious Host HoneyDB 2025-12-11 00:00:00 2026-03-12 00:00:00 malicious-activity
Suspicious Host AbuseIPDB 2024-09-09 02:04:21 2026-02-18 22:47:59 anomalous-activity
DDoS attack AbuseIPDB 2025-02-20 04:52:07 2025-04-19 22:00:24 malicious-activity
Proxy AbuseIPDB 2025-04-18 20:36:28 2025-04-18 20:36:28 anonymization
Mail Spammer Blocklist.de 2024-10-05 08:37:43 2024-10-05 08:37:43 malicious-activity
IMAP Attacker Blocklist.de 2024-10-05 08:24:05 2024-10-05 08:24:05 malicious-activity
HTTP Spammer Cleantalk.org 2023-06-27 09:16:25 2024-07-23 01:49:15 malicious-activity
HTTP bot Blocklist.de 2024-03-09 02:28:24 2024-03-26 02:40:05 malicious-activity
DDoS attack on site top-hosting.net.ua Blocklist.net.ua 2024-03-10 06:52:11 2024-03-10 06:52:11 malicious-activity
Mail Spammer Abuseat.org 2023-06-27 09:16:26 2023-06-27 09:16:26

Tags

bot abuse attacker spam bruteforce imap pop3 sasl mail apache ddos rfi login joomla wordpress

Whois information

AS name
AS9009 M247 LTD Frankfurt Infrastructure
AS registry
ripencc
AS date
1991-01-23 00:00:00
AS CIDR
146.70.160.0/24
CIDR
146.70.160.0/24
Registrant
M247 LTD Frankfurt Infrastructure
Address
Hanauer Landstrasse 302, Hessen 60314, Frankfurt, Germany
City
Frankfurt am Main
Postal code
60311
Country
DE โ€” Germany ๐Ÿ‡ฉ๐Ÿ‡ช
Contact email
[email protected], [email protected]
First indexed
2023-06-27 09:16:25
Last updated
2026-09-11 16:57:07

Malicious IPs in the same CIDR

146.70.160.236 146.70.160.222 146.70.160.238 146.70.160.252 146.70.160.254 146.70.160.246 146.70.160.212 146.70.160.214 146.70.160.174 146.70.160.244