212.156.66.142
Classification: Malicious
212.156.66.142 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-05. Network: AS9121 Turk Telekom TTnet national backbone.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2022-09-26 00:55:45 | 2026-09-05 18:19:28 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-08-30 07:51:05 | 2026-09-05 14:14:30 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-08-30 07:51:05 | 2026-09-05 14:14:30 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-09-05 09:03:55 | 2026-09-05 12:48:32 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-08-30 08:50:46 | 2026-09-05 12:18:07 | anomalous-activity attacker malicious-activity reconnaissance | |
| Malicious Host | AbuseIPDB | 2026-09-05 12:11:43 | 2026-09-05 12:11:43 | attacker compromised malicious-activity | |
| Phishing | AbuseIPDB | 2026-09-05 12:08:07 | 2026-09-05 12:08:07 | malicious-activity phishing | |
| IMAP Attacker | AbuseIPDB | 2026-09-05 12:08:07 | 2026-09-05 12:08:07 | attacker malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-09-05 10:33:50 | 2026-09-05 12:08:07 | attacker malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-09-05 10:33:50 | 2026-09-05 10:33:50 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-09-05 09:03:55 | 2026-09-05 10:33:50 | anomalous-activity attacker malicious-activity | |
| Hacking | AbuseIPDB | 2026-09-01 06:00:15 | 2026-09-05 10:19:44 | attacker malicious-activity | |
| SSH Attacker | Blocklist.de | 2026-08-30 14:00:37 | 2026-09-04 14:02:13 | attacker malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-08-31 09:21:57 | 2026-08-31 09:21:57 | attacker malicious-activity | |
| Mail Spammer | Blocklist.de | 2022-09-26 00:58:42 | 2022-09-27 02:01:41 | malicious-activity | |
| IMAP Attacker | Blocklist.de | 2022-09-26 00:55:30 | 2022-09-27 01:59:08 | malicious-activity |
Tags
mail spam attacker imap pop3 sasl bot ssh bruteforceWhois information
- AS name
- AS9121 Turk Telekom TTnet national backbone
- AS registry
- ripencc
- AS date
- 1998-12-08 00:00:00
- AS CIDR
- 212.156.0.0/17
- CIDR
- 212.156.0.0/17, 212.156.128.0/20, 212.156.144.0/21, 212.156.152.0/22, 212.156.156.0/23, 212.156.158.0/24
- Registrant
- Turk Telekom TTnet national backbone
- Address
- Turk Telekomunikasyon A.S Turgut Ozal Blv. Aydinlikevler 06103 ANKARA TURKEY
- City
- Ankara
- Postal code
- 06420
- Country
- TR — Türkiye 🇹🇷
- Contact email
- [email protected]
- First indexed
- 2022-09-26 00:55:30
- Last updated
- 2026-09-05 18:19:30