162.241.152.27

Classification: Malicious

162.241.152.27 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-03. Network: AS19871 Unified Layer.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.
  • VPN node β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Barracuda 2026-05-09 07:35:30 2026-09-03 01:44:20 attacker malicious-activity
Phishing AbuseIPDB 2026-09-03 01:21:58 2026-09-03 01:21:58 malicious-activity phishing
Mail Spammer AbuseIPDB 2026-08-18 16:53:00 2026-09-03 01:21:58 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-08-16 10:07:19 2026-09-03 01:21:58 attacker malicious-activity
Hacking AbuseIPDB 2026-08-16 10:07:19 2026-09-03 01:07:47 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-08-16 10:07:19 2026-09-01 20:17:03 anomalous-activity attacker malicious-activity
Bruteforce AbuseIPDB 2026-08-16 11:13:41 2026-09-01 13:14:47 attacker malicious-activity
Malicious Host AbuseIPDB 2026-08-16 10:10:33 2026-08-31 22:56:33 attacker compromised malicious-activity
DDoS Attacker Blocklist.net.ua 2026-08-17 16:41:24 2026-08-28 16:44:28 attacker malicious-activity
Port Scanner AbuseIPDB 2026-08-16 11:13:41 2026-08-23 18:20:06 anomalous-activity attacker malicious-activity reconnaissance
SQL Injection AbuseIPDB 2026-08-16 15:21:30 2026-08-18 17:19:34 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-08-16 15:01:38 2026-08-18 07:13:36 attacker malicious-activity
VPN AbuseIPDB 2026-08-17 11:16:17 2026-08-17 11:16:17 anonymization vpn
DDoS Attacker AbuseIPDB 2026-08-16 21:23:02 2026-08-16 21:23:02 attacker malicious-activity
Bruteforce login attacker Blocklist.de 2021-09-19 04:33:08 2021-09-20 04:47:23 malicious-activity
HTTP Attacker Blocklist.de 2021-09-16 04:32:09 2021-09-20 04:36:31 malicious-activity

Tags

apache ddos rfi attacker login bruteforce bot joomla wordpress abuse

Whois information

AS name
AS19871 Unified Layer
AS registry
arin
AS date
2013-08-22 00:00:00
AS CIDR
162.241.0.0/16
CIDR
162.240.0.0/15
Registrant
Unified Layer
Address
1958 South 950 East
City
Washington
State
DC
Postal code
20005
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected]
First indexed
2021-09-16 04:32:09
Last updated
2026-09-03 01:44:22

Malicious IPs in the same CIDR

162.241.60.11 162.241.2.179 162.241.242.50 162.241.152.27 162.241.203.67 162.241.203.42 162.241.203.237 162.241.203.232 162.241.61.40 162.241.2.240 162.241.61.20 162.241.7.225 162.241.2.199 162.241.203.147 162.241.2.94 162.241.203.142 162.241.203.227 162.241.203.32 162.241.203.62 162.241.203.162 162.241.61.125 162.241.61.240 162.241.203.12 162.241.2.189 162.241.60.16