38.156.72.4

Classification: Malicious

38.156.72.4 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-10. Network: AS174 Cogent Communications.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Open proxy β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Proxy FireHOL 2023-12-03 04:56:55 2026-09-10 19:29:28 anomalous-activity anonymization proxy
Anonymizer FireHOL 2026-02-27 09:24:01 2026-09-10 18:31:36 anomalous-activity anonymization
DDoS Attacker Blocklist.net.ua 2026-01-01 14:25:39 2026-09-05 16:10:15 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:11:59 2026-09-04 16:11:59 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-01-17 03:54:07 2026-04-17 02:40:18 anomalous-activity
DDoS attack on site kam-pod.gov.ua Blocklist.net.ua 2023-11-30 04:18:48 2024-08-28 12:45:26 malicious-activity
Mail Spammer Abuseat.org 2023-11-30 04:23:24 2023-11-30 04:23:24

Tags

abuse anonymization

Whois information

AS name
AS174 Cogent Communications
AS registry
arin
AS date
1991-04-16 00:00:00
AS CIDR
38.156.72.0/24
CIDR
38.0.0.0/8
Registrant
PSINet, Inc.
Address
2450 N Street NW
City
Washington
State
DC
Postal code
20037
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected], [email protected]
First indexed
2023-11-30 04:18:48
Last updated
2026-09-10 19:29:28

Malicious IPs in the same CIDR

38.156.72.40 38.156.72.22 38.156.72.4 38.156.72.132