209.141.48.24

Classification: Malicious

209.141.48.24 is a malicious IP address. Reported by 9 threat sources, last seen 2026-09-06. Network: AS53667 FranTech Solutions.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Open proxy β€” Provides anonymization that can hide an attacker.
  • VPN node β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
VPN IPWhois.io 2026-06-18 14:24:27 2026-09-06 13:01:40 anonymization vpn
Mail Spammer Barracuda 2021-05-12 06:57:51 2026-09-06 13:01:40 attacker malicious-activity
DDoS Attacker Blocklist.net.ua 2026-04-27 13:18:28 2026-09-05 17:23:00 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 17:27:11 2026-09-04 17:27:11 attacker malicious-activity
Malicious Host AbuseIPDB 2026-04-07 03:30:06 2026-06-07 20:31:55 compromised malicious-activity
Proxy IPWhois.io 2026-05-04 04:01:18 2026-05-04 04:01:18 anonymization
Port Scanner AbuseIPDB 2026-04-08 11:58:16 2026-05-04 02:18:25 anomalous-activity
Hacking AbuseIPDB 2026-04-07 11:32:16 2026-05-04 02:18:25 malicious-activity
HTTP Attacker AbuseIPDB 2026-04-07 03:30:06 2026-05-03 20:30:20 malicious-activity
Bruteforce AbuseIPDB 2026-04-07 02:39:27 2026-05-03 01:01:52 malicious-activity
HTTP Scrapper AbuseIPDB 2026-04-07 07:38:24 2026-05-02 02:21:52 anomalous-activity
SSH Attacker AbuseIPDB 2026-04-07 22:06:35 2026-04-28 19:23:35 malicious-activity
Known Attacker AbuseIPDB 2026-04-19 21:49:35 2026-04-19 21:49:35 malicious-activity
FTP Attacker AbuseIPDB 2026-04-19 21:49:35 2026-04-19 21:49:35 malicious-activity
Mail Spammer AbuseIPDB 2026-04-19 21:49:35 2026-04-19 21:49:35 malicious-activity
Phishing AbuseIPDB 2026-04-17 21:34:13 2026-04-19 21:49:35 malicious-activity
SQL Injection AbuseIPDB 2026-04-08 00:23:40 2026-04-19 21:49:35 malicious-activity
HTTP Attacker Blocklist.de 2026-04-13 03:00:18 2026-04-14 03:00:20 malicious-activity
Bruteforce login attacker Blocklist.de 2026-04-12 05:00:16 2026-04-13 05:00:14 malicious-activity
DDoS Attacker AbuseIPDB 2026-04-09 07:39:48 2026-04-09 07:39:48 malicious-activity
Malware Download URLhaus Abuse.ch 2024-12-26 13:20:37 2024-12-26 13:20:37 malicious-activity
ET COMPROMISED Known Compromised or Hostile Host Traffic UDP Emerging Threats 2021-05-14 16:17:53 2021-07-06 13:24:31 malicious-activity
ET COMPROMISED Known Compromised or Hostile Host Traffic TCP Emerging Threats 2021-05-14 16:17:51 2021-07-06 13:24:29 malicious-activity
Malicious Host HoneyDB 2021-05-11 00:00:00 2021-06-20 00:00:00 malicious-activity
Unauthorized scanning of hosts Blocklist.net.ua 2021-05-23 22:55:55 2021-05-24 01:57:42 malicious-activity
Malicious host Darklist 2021-05-18 14:33:25 2021-05-22 17:21:37 malicious-activity
SSH Attacker Blocklist.de 2021-05-12 06:57:50 2021-05-17 04:44:08 malicious-activity

Tags

ssh bruteforce bot apache attacker script kiddies abuse exe login joomla wordpress ddos rfi

Whois information

AS name
AS53667 FranTech Solutions
AS registry
arin
AS date
2011-01-27 00:00:00
AS CIDR
209.141.32.0/19
CIDR
209.141.32.0/19
Registrant
FranTech Solutions
Address
1621 Central Ave
City
Las Vegas
State
NV
Postal code
89052
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected]
First indexed
2021-05-12 06:57:50
Last updated
2026-09-06 13:01:41

Malicious IPs in the same CIDR

209.141.51.29 209.141.62.12 209.141.51.90 209.141.51.180 209.141.32.198 209.141.51.30 209.141.47.99 209.141.33.44 209.141.35.105 209.141.61.17 209.141.43.146 209.141.51.219 209.141.62.206 209.141.45.141 209.141.43.66 209.141.55.26 209.141.34.155 209.141.44.125 209.141.45.56 209.141.56.103 209.141.35.5 209.141.33.47 209.141.48.24 209.141.34.15 209.141.40.68