185.152.66.228

Classification: Malicious

185.152.66.228 is a malicious IP address. Reported by 8 threat sources, last seen 2026-08-27. Network: AS60068 Atl Ii. Ipv Route.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
VPN cyberghost Maltiverse Threat Observatory 2026-08-07 09:43:01 2026-08-27 09:45:57 anomalous-activity anonymization country_code:us industry:education-and-nonprofits
Malicious Host HoneyDB 2026-08-18 00:00:00 2026-08-18 00:00:00 attacker malicious-activity
HTTP Spammer StopForumSpam.com 2019-03-20 09:09:16 2025-06-25 23:51:24 malicious-activity
VPN IPWhois.io 2025-06-11 23:38:02 2025-06-15 04:41:40 anonymization
Mail Spammer Barracuda 2025-04-13 07:19:38 2025-06-15 04:41:40
Proxy IPWhois.io 2025-04-13 07:19:38 2025-04-13 07:19:38 anonymization
HTTP Spammer Sblam 2023-09-19 01:56:56 2023-09-19 02:13:36 malicious-activity
Malicious Host CIArmy 2023-01-18 06:57:29 2023-01-18 06:57:29 malicious-activity
HTTP Spammer Cleantalk.org 2019-04-12 07:23:31 2020-10-22 08:29:57

Tags

bot abuse port:5000 port:1337 port:12321 port:2000 port:10000 port:9000 port:823 port:5959 port:2333 port:7000

Whois information

AS name
AS60068 Atl Ii. Ipv Route
AS registry
ripencc
AS date
2016-05-17 00:00:00
AS CIDR
185.152.66.0/24
Registrant
Atl Ii. Ipv Route
City
Atlanta
State
GA
Postal code
30303
Country
US — United States 🇺🇸
First indexed
2019-03-20 09:09:16
Last updated
2026-08-28 14:18:22

Malicious IPs in the same CIDR

185.152.66.226 185.152.66.234 185.152.66.228 185.152.66.227