189.52.120.37

Classification: Malicious

189.52.120.37 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS4230 CLARO S.A..

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host CIArmy 2026-09-02 20:03:41 2026-09-02 20:03:41 attacker malicious-activity
Port Scanner AbuseIPDB 2026-09-01 14:28:45 2026-09-02 19:56:18 anomalous-activity attacker malicious-activity reconnaissance
Hacking AbuseIPDB 2026-09-02 09:31:30 2026-09-02 16:03:44 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-09-02 11:01:05 2026-09-02 12:38:40 attacker malicious-activity
Bruteforce AbuseIPDB 2026-09-02 09:31:30 2026-09-02 12:38:40 attacker malicious-activity
Malicious Host AbuseIPDB 2026-09-02 11:02:31 2026-09-02 11:02:31 attacker compromised malicious-activity

Whois information

AS name
AS4230 CLARO S.A.
Registrant
CLARO S.A.
City
Rio de Janeiro
Postal code
20060-070
Country
BR — Brazil 🇧🇷
First indexed
2026-09-02 20:03:41
Last updated
2026-09-02 20:03:41