24.199.106.237
Classification: Malicious
24.199.106.237 is a malicious IP address. Reported by 6 threat sources, last seen 2026-09-09. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-09-07 09:02:35 | 2026-09-09 09:02:43 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-09-07 09:02:33 | 2026-09-09 09:02:41 | malicious-activity | |
| Malicious Host | CIArmy | 2026-08-30 20:00:18 | 2026-08-30 20:00:18 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-12-22 02:04:44 | 2025-07-08 13:21:01 | anomalous-activity | |
| VPN | IPWhois.io | 2025-02-15 19:52:02 | 2025-02-19 22:10:52 | anonymization | |
| Unauthorized scanning of hosts | Blocklist.net.ua | 2024-12-24 12:49:20 | 2025-02-19 18:40:29 | malicious-activity | |
| Malicious Host | AbuseIPDB | 2024-12-22 23:04:53 | 2025-01-29 12:05:51 | compromised malicious-activity | |
| Bruteforce | AbuseIPDB | 2024-12-21 21:47:26 | 2025-01-28 16:44:15 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2024-12-21 21:47:26 | 2025-01-28 16:44:15 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2024-12-21 21:47:59 | 2025-01-25 15:00:10 | anomalous-activity | |
| SSH Attacker | Blocklist.de | 2024-12-22 11:53:10 | 2025-01-24 14:07:25 | malicious-activity | |
| FTP Attacker | AbuseIPDB | 2024-12-21 21:47:59 | 2025-01-23 17:23:44 | malicious-activity | |
| Hacking | AbuseIPDB | 2024-12-21 21:47:59 | 2025-01-23 17:23:44 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2024-12-21 21:47:59 | 2025-01-23 17:23:44 | anomalous-activity | |
| HTTP Attacker | AbuseIPDB | 2024-12-21 21:47:59 | 2025-01-23 17:23:44 | malicious-activity | |
| DDoS attack | AbuseIPDB | 2024-12-31 21:31:49 | 2025-01-19 23:36:07 | malicious-activity | |
| SQL Injection | AbuseIPDB | 2024-12-31 21:31:49 | 2025-01-19 11:17:07 | malicious-activity | |
| IMAP Attacker | AbuseIPDB | 2024-12-31 21:31:49 | 2025-01-19 11:17:07 | malicious-activity | |
| IoT Attacker | AbuseIPDB | 2024-12-31 21:31:49 | 2025-01-19 11:17:07 | malicious-activity |
Tags
ssh bruteforce bot abuseWhois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- arin
- AS date
- 2022-04-19 00:00:00
- AS CIDR
- 24.199.96.0/20
- CIDR
- 24.199.64.0/18
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas FL2
- City
- San Jose
- State
- CA
- Postal code
- 95113
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2024-12-22 03:39:18
- Last updated
- 2026-09-09 09:02:58
Malicious IPs in the same CIDR
24.199.111.14 24.199.105.84 24.199.107.75 24.199.96.175 24.199.109.65 24.199.98.33 24.199.108.98 24.199.110.50 24.199.109.45 24.199.96.71 24.199.97.28 24.199.106.225 24.199.106.198 24.199.109.66 24.199.106.237 24.199.102.228 24.199.111.139 24.199.111.183 24.199.104.2 24.199.102.171 24.199.104.218 24.199.104.246 24.199.99.40 24.199.99.80 24.199.98.80