191.96.106.59

Classification: Malicious

191.96.106.59 is a malicious IP address. Reported by 6 threat sources, last seen 2026-09-07. Network: AS174 Private Customer.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
HTTP Spammer StopForumSpam.com 2023-03-12 18:45:42 2026-09-07 07:32:30 malicious-activity
VPN IPWhois.io 2026-05-25 06:47:11 2026-05-25 06:47:11 anonymization
Mail Spammer Barracuda 2023-03-12 18:45:42 2026-05-25 06:47:11
HTTP bot Blocklist.de 2026-02-10 04:02:53 2026-02-10 04:02:53 malicious-activity
VPN Private Internet Access Maltiverse Threat Observatory 2025-09-02 08:00:24 2025-11-21 08:02:21 country_code:mx country_code:us industry:education-and-nonprofits industry:financial-services industry:government-and-public-sector industry:healthcare-and-pharmaceutical industry:retail-and-hospitality
HTTP Spammer Sblam 2024-04-17 03:03:38 2025-02-08 18:19:56 malicious-activity

Tags

bot abuse port:1194 port:51820 port:992 port:5555 port:500 port:4500 port:1701 port:1723 port:443 attacker spam bruteforce

Whois information

AS name
AS174 Private Customer
AS registry
ripencc
AS date
2014-03-13 00:00:00
AS CIDR
191.96.106.0/24
Registrant
Private Customer
City
Los Angeles
State
CA
Postal code
90012
Country
US — United States 🇺🇸
First indexed
2023-03-12 18:45:42
Last updated
2026-09-07 07:32:30

Malicious IPs in the same CIDR

191.96.106.50 191.96.106.213 191.96.106.189 191.96.106.219 191.96.106.184 191.96.106.153 191.96.106.159 191.96.106.162 191.96.106.191 191.96.106.197 191.96.106.199 191.96.106.212 191.96.106.14 191.96.106.131 191.96.106.25 191.96.106.69 191.96.106.60 191.96.106.146 191.96.106.28 191.96.106.66 191.96.106.148 191.96.106.39 191.96.106.59 191.96.106.63 191.96.106.139