51.158.206.103

Classification: Malicious

51.158.206.103 is a malicious IP address. Reported by 6 threat sources, last seen 2026-09-11. Network: AS12876 Scaleway - Amsterdam, Netherlands.

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Known scanner โ€” Seen scanning hosts over the Internet.
  • VPN node โ€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Empty reason Blocklist.net.ua 2026-09-04 16:24:04 2026-09-11 16:22:38 attacker malicious-activity
HTTP Spammer StopForumSpam.com 2026-08-01 09:04:17 2026-09-09 07:12:37 attacker malicious-activity
DDoS Attacker Blocklist.net.ua 2026-03-23 12:19:15 2026-09-05 16:22:05 attacker malicious-activity
VPN IPWhois.io 2026-05-25 06:13:18 2026-08-15 21:59:27 anonymization vpn
Hacking AbuseIPDB 2026-05-22 12:09:26 2026-08-07 07:23:52 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-05-22 12:09:26 2026-08-07 07:23:52 attacker malicious-activity
Bruteforce AbuseIPDB 2026-07-30 19:11:31 2026-08-05 22:22:49 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-06-22 06:05:07 2026-08-05 22:22:49 anomalous-activity attacker malicious-activity
SSH Attacker AbuseIPDB 2026-07-30 19:11:31 2026-08-05 06:00:00 attacker malicious-activity
Port Scanner AbuseIPDB 2026-07-30 18:03:00 2026-08-04 18:34:39 anomalous-activity attacker malicious-activity reconnaissance
Malicious Host AbuseIPDB 2026-08-01 10:27:25 2026-08-03 12:12:33 attacker compromised malicious-activity
Known Attacker AbuseIPDB 2026-08-01 10:27:25 2026-08-01 10:27:25 attacker malicious-activity
FTP Attacker AbuseIPDB 2026-08-01 10:27:25 2026-08-01 10:27:25 attacker malicious-activity
Phishing AbuseIPDB 2026-08-01 10:27:25 2026-08-01 10:27:25 malicious-activity phishing
Mail Spammer AbuseIPDB 2026-08-01 10:27:25 2026-08-01 10:27:25 attacker malicious-activity
SQL Injection AbuseIPDB 2026-08-01 10:27:25 2026-08-01 10:27:25 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-06-22 06:05:07 2026-06-29 14:25:50 attacker malicious-activity
VPN PublicVpnConfigs Maltiverse Threat Observatory 2026-03-10 08:00:44 2026-03-16 08:00:44 country_code:ec country_code:us industry:education-and-nonprofits
Suspicious Host AbuseIPDB 2024-08-14 16:46:49 2024-09-15 13:36:47 anomalous-activity
Mail Spammer Blocklist.de 2024-08-15 10:17:20 2024-08-16 11:08:29 malicious-activity
IMAP Attacker Blocklist.de 2024-08-15 09:49:11 2024-08-16 10:46:24 malicious-activity

Tags

attacker imap pop3 sasl bot mail spam port:1194 port:51820 port:992 port:5555 port:500 port:4500 port:1701 port:1723 abuse

Whois information

AS name
AS12876 Scaleway - Amsterdam, Netherlands
AS registry
ripencc
AS date
1993-09-01 00:00:00
AS CIDR
51.158.128.0/17
Registrant
Scaleway - Amsterdam, Netherlands
City
Amsterdam
Postal code
1012 AB
Country
NL โ€” Netherlands ๐Ÿ‡ณ๐Ÿ‡ฑ
First indexed
2024-08-15 06:17:11
Last updated
2026-09-11 16:22:38

Malicious IPs in the same CIDR

51.158.206.86 51.158.160.128 51.158.205.203 51.158.206.20 51.158.202.220 51.158.205.47 51.158.206.87 51.158.206.103 51.158.202.241 51.158.146.152 51.158.206.96 51.158.203.8 51.158.204.60 51.158.204.81 51.158.253.21 51.158.202.232 51.158.202.249 51.158.252.220 51.158.206.98 51.158.205.226 51.158.204.204 51.158.205.244 51.158.206.12 51.158.146.212 51.158.202.236