162.241.152.27
Classification: Malicious
162.241.152.27 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-03. Network: AS19871 Unified Layer.
Current activity
- Known attacker β Seen launching attacks over the Internet.
- Known scanner β Seen scanning hosts over the Internet.
- VPN node β Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2026-05-09 07:35:30 | 2026-09-03 01:44:20 | attacker malicious-activity | |
| Phishing | AbuseIPDB | 2026-09-03 01:21:58 | 2026-09-03 01:21:58 | malicious-activity phishing | |
| Mail Spammer | AbuseIPDB | 2026-08-18 16:53:00 | 2026-09-03 01:21:58 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-08-16 10:07:19 | 2026-09-03 01:21:58 | attacker malicious-activity | |
| Hacking | AbuseIPDB | 2026-08-16 10:07:19 | 2026-09-03 01:07:47 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-08-16 10:07:19 | 2026-09-01 20:17:03 | anomalous-activity attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-08-16 11:13:41 | 2026-09-01 13:14:47 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-08-16 10:10:33 | 2026-08-31 22:56:33 | attacker compromised malicious-activity | |
| DDoS Attacker | Blocklist.net.ua | 2026-08-17 16:41:24 | 2026-08-28 16:44:28 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-08-16 11:13:41 | 2026-08-23 18:20:06 | anomalous-activity attacker malicious-activity reconnaissance | |
| SQL Injection | AbuseIPDB | 2026-08-16 15:21:30 | 2026-08-18 17:19:34 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-08-16 15:01:38 | 2026-08-18 07:13:36 | attacker malicious-activity | |
| VPN | AbuseIPDB | 2026-08-17 11:16:17 | 2026-08-17 11:16:17 | anonymization vpn | |
| DDoS Attacker | AbuseIPDB | 2026-08-16 21:23:02 | 2026-08-16 21:23:02 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2021-09-19 04:33:08 | 2021-09-20 04:47:23 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2021-09-16 04:32:09 | 2021-09-20 04:36:31 | malicious-activity |
Tags
apache ddos rfi attacker login bruteforce bot joomla wordpress abuseWhois information
- AS name
- AS19871 Unified Layer
- AS registry
- arin
- AS date
- 2013-08-22 00:00:00
- AS CIDR
- 162.241.0.0/16
- CIDR
- 162.240.0.0/15
- Registrant
- Unified Layer
- Address
- 1958 South 950 East
- City
- Washington
- State
- DC
- Postal code
- 20005
- Country
- US β United States πΊπΈ
- Contact email
- [email protected], [email protected]
- First indexed
- 2021-09-16 04:32:09
- Last updated
- 2026-09-03 01:44:22
Malicious IPs in the same CIDR
162.241.60.11 162.241.2.179 162.241.242.50 162.241.152.27 162.241.203.67 162.241.203.42 162.241.203.237 162.241.203.232 162.241.61.40 162.241.2.240 162.241.61.20 162.241.7.225 162.241.2.199 162.241.203.147 162.241.2.94 162.241.203.142 162.241.203.227 162.241.203.32 162.241.203.62 162.241.203.162 162.241.61.125 162.241.61.240 162.241.203.12 162.241.2.189 162.241.60.16