37.120.156.42

Classification: Malicious

37.120.156.42 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-09. Network: AS9009 M247 LTD Warsaw Infrastructure.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
VPN IPWhois.io 2025-02-16 23:19:10 2026-09-09 10:26:29 anonymization vpn
HTTP Spammer StopForumSpam.com 2020-01-28 02:17:58 2026-09-09 07:07:32 attacker malicious-activity
SSH Attacker Blocklist.de 2026-08-23 14:00:56 2026-08-23 14:00:56 attacker malicious-activity
Suspicious Host AbuseIPDB 2024-12-31 00:32:05 2025-07-13 15:30:07 anomalous-activity
DDoS Attacker Blocklist.net.ua 2024-06-24 05:15:42 2025-06-24 09:26:40 malicious-activity
Proxy IPWhois.io 2025-06-07 09:43:54 2025-06-16 09:35:47 anonymization

Tags

bot abuse ssh bruteforce

Whois information

AS name
AS9009 M247 LTD Warsaw Infrastructure
AS registry
ripencc
AS date
2012-02-13 00:00:00
AS CIDR
37.120.156.0/24
CIDR
37.120.156.0/24
Registrant
M247 LTD Warsaw Infrastructure
Address
Victor Hugo u. 11-15, Budapest 1132, Budapest, Hungary
City
Warsaw
Postal code
00-510
Country
PL — Poland 🇵🇱
Contact email
[email protected], [email protected]
First indexed
2020-01-28 02:17:58
Last updated
2026-09-09 10:26:30

Malicious IPs in the same CIDR

37.120.156.26 37.120.156.30 37.120.156.43 37.120.156.38 37.120.156.28 37.120.156.42 37.120.156.44 37.120.156.46 37.120.156.29 37.120.156.45 37.120.156.194