49.12.130.237

Classification: Malicious

49.12.130.237 is a malicious IP address. Reported by 2 threat sources, last seen 2026-08-31. Network: AS24940 Hetzner Online GmbH.

Current activity

  • Command & Control server — Used by cybercriminals to control victim computers.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Tactical RMM Maltiverse Threat Observatory 2025-11-21 16:17:40 2026-08-31 14:47:38 botnet country_code:pr industry:retail-and-hospitality malicious-activity
Trojan.Generic Hybrid-Analysis 2021-09-24 16:45:06 2021-09-24 16:45:06

Tags

port:443

Whois information

AS name
AS24940 Hetzner Online GmbH
AS registry
ripencc
AS date
2010-10-21 00:00:00
AS CIDR
49.12.0.0/16
Registrant
Hetzner Online GmbH
City
Falkenstein/Vogtl.
Postal code
08223
Country
DE — Germany 🇩🇪
First indexed
2021-09-24 16:45:06
Last updated
2026-08-31 15:34:09

Malicious IPs in the same CIDR

49.12.10.9 49.12.6.0 49.12.130.237 49.12.231.230 49.12.238.251 49.12.80.147 49.12.3.147 49.12.64.229 49.12.7.88 49.12.169.107 49.12.72.74 49.12.232.71 49.12.104.241 49.12.100.150