42.56.239.196
Classification: Malicious
42.56.239.196 is a malicious IP address. Reported by 4 threat sources, last seen 2026-08-26. Network: AS4837 UNICOM Liaoning Province Network.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2023-05-11 03:00:49 | 2026-08-26 20:49:46 | attacker malicious-activity | |
| SSH Attacker | Blocklist.net.ua | 2023-11-30 04:22:08 | 2023-12-29 04:09:14 | malicious-activity | |
| Mail Spammer | Blocklist.de | 2023-05-11 03:05:58 | 2023-05-11 03:05:58 | malicious-activity | |
| IMAP Attacker | Blocklist.de | 2023-05-11 03:00:49 | 2023-05-11 03:00:49 | malicious-activity | |
| Mail Spammer | Abuseat.org | 2023-05-11 03:00:49 | 2023-05-11 03:00:49 |
Tags
mail spam attacker imap pop3 sasl bot abuseWhois information
- AS name
- AS4837 UNICOM Liaoning Province Network
- AS registry
- apnic
- AS date
- 2011-02-22 00:00:00
- AS CIDR
- 42.56.0.0/14
- CIDR
- 42.56.0.0/14
- Registrant
- UNICOM Liaoning Province Network
- Address
- No.21,Financial Street Beijing,100033 P.R.China
- City
- Shenyang
- Postal code
- 110003
- Country
- CN — China 🇨🇳
- Contact email
- [email protected], [email protected], [email protected]
- First indexed
- 2023-05-11 03:00:49
- Last updated
- 2026-08-26 20:49:47
Malicious IPs in the same CIDR
42.57.149.55 42.57.151.116 42.56.239.122 42.59.236.147 42.56.239.111 42.56.239.196 42.59.110.125 42.59.103.218 42.56.238.180 42.59.102.196 42.59.101.97 42.56.239.151 42.59.232.35 42.59.101.200 42.56.239.46 42.56.238.35 42.59.102.142 42.56.238.101