42.56.239.196

Classification: Malicious

42.56.239.196 is a malicious IP address. Reported by 4 threat sources, last seen 2026-08-26. Network: AS4837 UNICOM Liaoning Province Network.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Barracuda 2023-05-11 03:00:49 2026-08-26 20:49:46 attacker malicious-activity
SSH Attacker Blocklist.net.ua 2023-11-30 04:22:08 2023-12-29 04:09:14 malicious-activity
Mail Spammer Blocklist.de 2023-05-11 03:05:58 2023-05-11 03:05:58 malicious-activity
IMAP Attacker Blocklist.de 2023-05-11 03:00:49 2023-05-11 03:00:49 malicious-activity
Mail Spammer Abuseat.org 2023-05-11 03:00:49 2023-05-11 03:00:49

Tags

mail spam attacker imap pop3 sasl bot abuse

Whois information

AS name
AS4837 UNICOM Liaoning Province Network
AS registry
apnic
AS date
2011-02-22 00:00:00
AS CIDR
42.56.0.0/14
CIDR
42.56.0.0/14
Registrant
UNICOM Liaoning Province Network
Address
No.21,Financial Street Beijing,100033 P.R.China
City
Shenyang
Postal code
110003
Country
CN — China 🇨🇳
Contact email
[email protected], [email protected], [email protected]
First indexed
2023-05-11 03:00:49
Last updated
2026-08-26 20:49:47

Malicious IPs in the same CIDR

42.57.149.55 42.57.151.116 42.56.239.122 42.59.236.147 42.56.239.111 42.56.239.196 42.59.110.125 42.59.103.218 42.56.238.180 42.59.102.196 42.59.101.97 42.56.239.151 42.59.232.35 42.59.101.200 42.56.239.46 42.56.238.35 42.59.102.142 42.56.238.101