212.156.98.254

Classification: Malicious

212.156.98.254 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-12. Network: AS9121 Turk Telekom.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.de 2026-06-09 14:00:54 2026-09-12 14:02:54 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-05-23 17:59:19 2026-05-23 17:59:19 anomalous-activity
Malicious Host HoneyDB 2021-04-08 00:00:00 2021-04-08 00:00:00

Tags

ssh bruteforce bot

Whois information

AS name
AS9121 Turk Telekom
AS registry
ripencc
AS date
1998-12-08 00:00:00
AS CIDR
212.156.0.0/17
City
Tokat Province
Country
TR — Türkiye 🇹🇷
First indexed
2021-04-09 13:59:31
Last updated
2026-09-12 14:02:54

Malicious IPs in the same CIDR

212.156.98.254 212.156.66.142