212.56.48.76

Classification: Malicious

212.56.48.76 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS3257 Vpn Consumer Amsterdam, The Netherlands.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host CIArmy 2026-09-02 20:04:04 2026-09-02 20:04:04 attacker malicious-activity
VPN Private Internet Access Maltiverse Threat Observatory 2025-12-07 08:00:41 2025-12-10 08:00:42
HTTP Spammer StopForumSpam.com 2025-08-13 18:28:43 2025-10-06 17:06:58 malicious-activity
Proxy FireHOL 2025-07-23 02:48:17 2025-07-23 02:48:17 anonymization

Tags

anonymization bot abuse port:1194 port:51820 port:992 port:5555 port:500 port:4500 port:1701 port:1723 port:443

Whois information

AS name
AS3257 Vpn Consumer Amsterdam, The Netherlands
Registrant
Vpn Consumer Amsterdam, The Netherlands
City
Amsterdam
Postal code
1012 JS
Country
NL — Netherlands 🇳🇱
First indexed
2025-07-23 02:48:17
Last updated
2026-09-02 20:04:04