2.57.121.86

Classification: Malicious

2.57.121.86 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-04. Network: AS47890 UNMANAGED LTD.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Known attacker Blocklist.de 2026-04-06 11:00:09 2026-09-04 15:00:07 attacker malicious-activity
SSH Attacker Blocklist.de 2026-03-17 10:05:16 2026-09-04 14:02:09 attacker malicious-activity
Malicious Host AbuseIPDB 2026-03-16 23:16:52 2026-06-07 17:10:15 compromised malicious-activity
SIP Attacker Blocklist.de 2026-05-05 09:00:03 2026-05-06 09:00:03 malicious-activity
Malicious Host HoneyDB 2026-03-16 00:00:00 2026-04-15 00:00:00 malicious-activity
Bruteforce AbuseIPDB 2026-03-18 16:04:56 2026-03-22 22:02:48 malicious-activity
SSH Attacker AbuseIPDB 2026-03-18 16:04:56 2026-03-22 22:02:48 malicious-activity
Hacking AbuseIPDB 2026-03-18 16:05:17 2026-03-22 21:54:27 malicious-activity
Known Attacker AbuseIPDB 2026-03-19 01:57:29 2026-03-22 21:40:52 malicious-activity
HTTP Scrapper AbuseIPDB 2026-03-19 01:47:11 2026-03-22 21:40:52 anomalous-activity
Mail Spammer AbuseIPDB 2026-03-18 20:58:47 2026-03-22 21:40:52 malicious-activity
DDoS Attacker AbuseIPDB 2026-03-18 17:49:33 2026-03-22 21:40:52 malicious-activity
HTTP Attacker AbuseIPDB 2026-03-18 17:06:44 2026-03-22 21:40:52 malicious-activity
Port Scanner AbuseIPDB 2026-03-18 16:38:14 2026-03-22 21:28:05 anomalous-activity
DNS Compromise AbuseIPDB 2026-03-19 15:53:39 2026-03-22 15:34:48 compromised
DNS Poisoning AbuseIPDB 2026-03-19 15:53:39 2026-03-22 15:34:48 compromised
FTP Attacker AbuseIPDB 2026-03-19 01:47:11 2026-03-22 13:19:32 malicious-activity
Phishing AbuseIPDB 2026-03-18 20:58:47 2026-03-21 04:45:44 malicious-activity
VPN AbuseIPDB 2026-03-20 12:41:57 2026-03-20 12:41:57 anonymization
IMAP Attacker AbuseIPDB 2026-03-18 20:58:47 2026-03-18 20:58:47 malicious-activity
Malicious Host CIArmy 2022-04-20 03:36:45 2022-05-15 01:30:59 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2022-05-01 00:10:48 2022-05-08 00:10:21 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2022-05-01 00:10:46 2022-05-08 00:10:19 malicious-activity

Tags

ssh bruteforce bot attacker strong+attacker sip

Whois information

AS name
AS47890 UNMANAGED LTD
AS registry
ripencc
AS date
2019-03-19 00:00:00
AS CIDR
2.57.121.0/24
CIDR
2.57.121.0/24
Registrant
UNMANAGED LTD
Address
Unit B, Brindley Close, Rushden, Northamptonshire, NN10 6EN
City
Timisoara
Postal code
300574
Country
RO — Romania 🇷🇴
First indexed
2022-04-20 03:36:45
Last updated
2026-09-04 15:00:07

Malicious IPs in the same CIDR

2.57.121.50 2.57.121.112 2.57.121.25 2.57.121.86 2.57.121.118 2.57.121.69 2.57.121.120 2.57.121.17