198.235.24.128

Classification: Malicious

198.235.24.128 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-13. Network: AS396982 Palo Alto Networks, Inc.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Unauthorized scanning of hosts Blocklist.net.ua 2022-07-20 03:38:59 2026-09-13 17:23:24 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-11 17:26:06 2026-09-11 17:26:06 attacker malicious-activity
HTTP Attacker Blocklist.de 2024-08-07 08:31:37 2024-10-19 09:50:59 malicious-activity
Malicious Host HoneyDB 2022-12-19 00:00:00 2024-04-12 00:00:00 malicious-activity
SSH Attacker Blocklist.de 2023-03-10 06:09:54 2023-03-11 06:04:43 malicious-activity
Mail Spammer Abuseat.org 2023-01-03 06:41:43 2023-01-03 06:41:43

Tags

ssh bruteforce bot abuse apache ddos rfi attacker

Whois information

AS name
AS396982 Palo Alto Networks, Inc
AS registry
arin
AS date
2021-12-20 00:00:00
AS CIDR
198.235.24.0/24
CIDR
198.235.24.0/24
Registrant
Palo Alto Networks, Inc
Address
Palo Alto Networks 3000 Tannery Way Santa Clara, CA 95054
City
Brussels
State
CA
Postal code
1000
Country
BE — Belgium 🇧🇪
Contact email
[email protected], [email protected]
First indexed
2022-07-20 03:38:59
Last updated
2026-09-13 17:23:24

Malicious IPs in the same CIDR

198.235.24.248 198.235.24.205 198.235.24.208 198.235.24.225 198.235.24.192 198.235.24.128 198.235.24.80 198.235.24.25