47.238.254.223
Classification: Malicious
47.238.254.223 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-12. Network: AS45102 ALIBABA CLOUD HK.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.de | 2026-06-01 09:01:00 | 2026-09-12 14:03:44 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-06-02 22:52:02 | 2026-06-02 22:52:02 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-05-31 22:00:06 | 2026-05-31 22:00:06 | anomalous-activity | |
| Bruteforce | AbuseIPDB | 2026-05-30 19:38:33 | 2026-05-31 17:05:05 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-05-30 19:38:33 | 2026-05-31 17:05:05 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-05-31 11:20:25 | 2026-05-31 11:20:25 | anomalous-activity |
Tags
ssh bruteforce botWhois information
- AS name
- AS45102 ALIBABA CLOUD HK
- Registrant
- ALIBABA CLOUD HK
- City
- Hong Kong
- Country
- HK — Hong Kong 🇭🇰
- First indexed
- 2026-06-01 00:10:00
- Last updated
- 2026-09-12 14:03:44