49.12.64.229
Classification: Malicious
49.12.64.229 is a malicious IP address. Reported by 2 threat sources, last seen 2026-08-28. Network: AS24940 Hetzner Online GmbH.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.de | 2024-09-20 10:37:36 | 2026-08-28 14:04:22 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-08-07 09:01:48 | 2026-08-08 09:01:28 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-08-07 07:01:51 | 2026-08-08 07:01:36 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2024-09-20 07:06:06 | 2026-06-03 06:59:52 | compromised malicious-activity | |
| Bruteforce | AbuseIPDB | 2024-09-20 02:27:55 | 2024-09-20 10:32:15 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2024-09-20 02:27:55 | 2024-09-20 10:32:15 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2024-09-20 03:21:29 | 2024-09-20 03:21:29 | anomalous-activity |
Tags
ssh bruteforce bot apache ddos rfi attacker login joomla wordpressWhois information
- AS name
- AS24940 Hetzner Online GmbH
- AS registry
- ripencc
- AS date
- 2010-10-21 00:00:00
- AS CIDR
- 49.12.0.0/16
- Registrant
- Hetzner Online GmbH
- City
- Falkenstein/Vogtl.
- Postal code
- 08223
- Country
- DE — Germany 🇩🇪
- First indexed
- 2024-09-20 10:37:36
- Last updated
- 2026-08-28 14:04:22
Malicious IPs in the same CIDR
49.12.6.0 49.12.130.237 49.12.231.230 49.12.238.251 49.12.80.147 49.12.10.9 49.12.3.147 49.12.64.229 49.12.7.88 49.12.169.107 49.12.72.74 49.12.232.71 49.12.104.241 49.12.100.150