37.27.237.20

Classification: Malicious

37.27.237.20 is a malicious IP address. Reported by 6 threat sources, last seen 2026-09-02. Network: AS24940 Hetzner Online GmbH.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Open proxy — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Proxy FireHOL 2022-12-31 17:01:01 2026-09-02 19:11:28 anomalous-activity anonymization proxy
Anonymizer FireHOL 2026-02-27 08:57:51 2026-09-02 18:14:52 anomalous-activity anonymization
Proxy IPWhois.io 2025-02-17 00:40:42 2026-06-15 16:08:05 anonymization
Mail Spammer Barracuda 2025-02-17 00:40:42 2026-06-15 16:08:05
Anonymizer FireHol 2022-01-18 12:52:40 2022-12-29 16:54:07 anonymization
Anonymizer Maltiverse Research Team 2020-11-21 15:04:19 2021-12-21 05:56:17 anonymization anonymizer
Anonymizer Maltiverse 2018-08-20 08:01:46 2018-08-20 08:01:46

Tags

anonymization anonymizer

Whois information

AS name
AS24940 Hetzner Online GmbH
AS registry
ripencc
AS date
2011-12-28 00:00:00
AS CIDR
37.27.0.0/16
Registrant
Hetzner Online GmbH
City
Helsinki
Postal code
02101
Country
FI — Finland 🇫🇮
First indexed
2018-08-20 08:01:46
Last updated
2026-09-02 19:12:42

Malicious IPs in the same CIDR

37.27.231.161 37.27.232.69 37.27.122.120 37.27.250.147 37.27.235.237 37.27.36.6 37.27.221.199 37.27.25.133 37.27.251.154 37.27.252.217 37.27.247.17 37.27.250.85 37.27.253.127 37.27.221.139 37.27.237.20 37.27.237.93 37.27.194.27 37.27.194.135 37.27.227.242 37.27.229.84 37.27.192.106 37.27.211.186 37.27.207.109 37.27.150.132 37.27.166.74