189.52.120.37
Classification: Malicious
189.52.120.37 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS4230 CLARO S.A..
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | CIArmy | 2026-09-02 20:03:41 | 2026-09-02 20:03:41 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-09-01 14:28:45 | 2026-09-02 19:56:18 | anomalous-activity attacker malicious-activity reconnaissance | |
| Hacking | AbuseIPDB | 2026-09-02 09:31:30 | 2026-09-02 16:03:44 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-09-02 11:01:05 | 2026-09-02 12:38:40 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-09-02 09:31:30 | 2026-09-02 12:38:40 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-09-02 11:02:31 | 2026-09-02 11:02:31 | attacker compromised malicious-activity |
Whois information
- AS name
- AS4230 CLARO S.A.
- Registrant
- CLARO S.A.
- City
- Rio de Janeiro
- Postal code
- 20060-070
- Country
- BR — Brazil 🇧🇷
- First indexed
- 2026-09-02 20:03:41
- Last updated
- 2026-09-02 20:03:41