45.56.66.228

Classification: Malicious

45.56.66.228 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-01. Network: AS63949 Linode.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.
  • VPN node β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Hacking AbuseIPDB 2024-11-09 16:59:02 2026-09-01 23:34:50 attacker malicious-activity
IMAP Attacker AbuseIPDB 2024-11-09 16:59:02 2026-09-01 23:34:50 attacker malicious-activity
Port Scanner AbuseIPDB 2024-11-09 08:45:07 2026-09-01 23:34:50 anomalous-activity attacker malicious-activity reconnaissance
Bruteforce AbuseIPDB 2024-11-09 04:39:53 2026-08-26 22:02:32 attacker malicious-activity
Mail Spammer AbuseIPDB 2024-11-09 15:15:33 2026-08-26 21:40:01 attacker malicious-activity
SSH Attacker AbuseIPDB 2024-11-16 08:50:54 2026-08-26 18:53:54 attacker malicious-activity
Malicious Host AbuseIPDB 2024-09-06 21:35:03 2026-08-26 11:19:44 attacker compromised malicious-activity
Mail Spammer Blocklist.de 2024-09-07 08:28:17 2026-08-25 12:02:25 attacker malicious-activity
IMAP Attacker Blocklist.de 2024-11-03 10:37:27 2026-08-25 11:02:09 attacker malicious-activity
DDoS Attacker AbuseIPDB 2025-12-01 05:20:37 2026-08-23 01:30:21 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2024-11-14 07:20:37 2026-08-23 00:30:21 anomalous-activity attacker malicious-activity
HTTP Attacker AbuseIPDB 2024-11-10 02:03:07 2026-08-21 17:41:08 attacker malicious-activity
SIP Attacker AbuseIPDB 2025-12-01 05:19:50 2026-07-31 10:03:04 attacker malicious-activity
Phishing AbuseIPDB 2024-11-09 16:59:02 2026-06-10 08:48:20 malicious-activity phishing
Bruteforce login attacker Blocklist.de 2025-12-29 19:23:59 2026-05-03 05:01:48 malicious-activity
HTTP Attacker Blocklist.de 2025-12-03 00:03:33 2026-05-03 03:01:52 malicious-activity
VPN AbuseIPDB 2024-11-10 02:03:07 2026-01-13 18:00:42 anonymization
Suspicious Host AbuseIPDB 2024-09-03 20:00:12 2025-11-30 03:00:04 anomalous-activity
DDoS attack AbuseIPDB 2024-11-16 05:15:47 2025-06-07 09:37:51 malicious-activity

Tags

mail spam attacker imap pop3 sasl bot apache ddos rfi login bruteforce joomla wordpress

Whois information

AS name
AS63949 Linode
AS registry
arin
AS date
2015-01-21 00:00:00
AS CIDR
45.56.64.0/20
CIDR
45.56.64.0/18
Registrant
Linode
Address
145 Broadway
City
Plano
State
TX
Postal code
75082
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected], [email protected], [email protected]
First indexed
2024-09-04 04:53:14
Last updated
2026-09-03 03:12:44

Malicious IPs in the same CIDR

45.56.72.104 45.56.66.228 45.56.72.13