38.156.72.132

Classification: Malicious

38.156.72.132 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-05. IoC context and downloadable threat intel on Maltiverse.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-01-29 13:29:19 2026-09-05 16:10:16 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:11:59 2026-09-04 16:11:59 attacker malicious-activity
Suspicious Host AbuseIPDB 2024-10-02 13:26:23 2026-05-24 02:12:01 anomalous-activity
Malicious Host HoneyDB 2026-01-16 00:00:00 2026-05-23 00:00:00 malicious-activity
Mail Spammer Blocklist.de 2026-03-29 08:10:58 2026-03-30 08:04:55 malicious-activity
IMAP Attacker Blocklist.de 2026-03-29 07:10:51 2026-03-30 07:04:12 malicious-activity
Proxy FireHOL 2025-08-03 11:01:26 2025-09-12 10:58:26 anonymization

Tags

anonymization abuse attacker imap pop3 sasl bot mail spam

Whois information

AS name
AS202561 High Speed Telekomunikasyon Ve Haberlesme Hizmetleri LTD Sti
AS registry
arin
AS date
1991-04-16 00:00:00
AS CIDR
38.156.72.0/24
CIDR
38.0.0.0/8
Registrant
PSINet, Inc.
Address
2450 N Street NW
City
Antakya
State
DC
Postal code
31001
Country
TR — Türkiye 🇹🇷
Contact email
[email protected], [email protected], [email protected]
First indexed
2024-10-03 07:26:52
Last updated
2026-09-05 16:10:17

Malicious IPs in the same CIDR

38.156.72.4 38.156.72.40 38.156.72.22 38.156.72.132