221.162.214.111
Classification: Malicious
221.162.214.111 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-13. Network: AS4766 Korea Telecom.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.net.ua | 2026-05-27 12:03:37 | 2026-09-13 17:29:34 | attacker malicious-activity | |
| SSH Attacker | Blocklist.de | 2026-05-19 10:00:56 | 2026-09-12 14:03:01 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 17:29:34 | 2026-09-11 17:32:13 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-08-13 09:01:46 | 2026-08-15 09:01:11 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-08-13 07:01:46 | 2026-08-15 07:01:19 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-05-19 03:20:40 | 2026-07-08 06:55:43 | anomalous-activity attacker malicious-activity reconnaissance | |
| SSH Attacker | AbuseIPDB | 2026-05-19 03:06:43 | 2026-07-08 06:55:43 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-05-19 02:41:28 | 2026-07-08 06:55:43 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-05-19 22:12:40 | 2026-06-04 15:00:06 | compromised malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-05-20 04:05:04 | 2026-06-01 04:07:22 | attacker malicious-activity | |
| Hacking | AbuseIPDB | 2026-05-20 02:08:58 | 2026-06-01 03:07:24 | attacker malicious-activity | |
| Malicious Host | HoneyDB | 2026-05-19 00:00:00 | 2026-05-31 00:00:00 | malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-05-19 21:50:05 | 2026-05-29 14:32:09 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-05-20 02:08:58 | 2026-05-25 00:46:04 | anomalous-activity | |
| DDoS Attacker | AbuseIPDB | 2026-05-21 21:49:45 | 2026-05-21 21:49:45 | attacker malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-05-21 21:49:45 | 2026-05-21 21:49:45 | attacker malicious-activity |
Tags
ssh bruteforce bot abuse apache ddos rfi attacker login joomla wordpressWhois information
- AS name
- AS4766 Korea Telecom
- Registrant
- Korea Telecom
- City
- Seongnam-si
- Postal code
- 13437
- Country
- KR — Korea, Republic of 🇰🇷
- First indexed
- 2026-05-19 10:00:56
- Last updated
- 2026-09-13 17:29:34