59.2.248.84
Classification: Malicious
59.2.248.84 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-28. Network: AS4766 Korea Telecom.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2022-12-28 02:09:12 | 2026-08-28 07:36:45 | attacker malicious-activity | |
| SSH Attacker | Blocklist.net.ua | 2023-09-02 04:19:21 | 2024-04-19 06:43:59 | malicious-activity | |
| Mail Spammer | Blocklist.de | 2022-10-25 02:25:58 | 2024-04-02 03:25:54 | malicious-activity | |
| IMAP Attacker | Blocklist.de | 2022-11-03 02:08:34 | 2024-04-02 03:05:18 | malicious-activity | |
| SSH Attacker | Blocklist.de | 2023-02-09 02:58:12 | 2024-03-28 04:34:05 | malicious-activity | |
| Malicious Host | HoneyDB | 2023-01-16 00:00:00 | 2023-12-04 00:00:00 | malicious-activity | |
| Mail Spammer | Abuseat.org | 2022-12-28 02:09:12 | 2022-12-28 14:31:56 | ||
| Bruteforce | Maltiverse | 2022-09-24 20:17:02 | 2022-12-28 00:55:51 | malicious-activity | |
| Hacking | Maltiverse | 2022-09-30 18:03:32 | 2022-12-27 23:00:28 | malicious-activity | |
| SSH Attacker | Maltiverse | 2022-10-01 13:25:46 | 2022-12-27 21:50:20 | malicious-activity | |
| IMAP Attacker | Maltiverse | 2022-10-06 23:47:35 | 2022-12-27 09:18:34 | malicious-activity | |
| Mail Spammer | Maltiverse | 2022-10-02 19:11:49 | 2022-12-20 15:56:08 | malicious-activity | |
| Port Scanner | Maltiverse | 2022-10-06 23:47:35 | 2022-12-19 12:24:15 | anomalous-activity | |
| Malicious Host | Maltiverse | 2022-10-03 10:21:41 | 2022-12-10 19:40:21 | compromised malicious-activity | |
| HTTP Attacker | Maltiverse | 2022-10-01 01:12:59 | 2022-12-08 19:31:31 | malicious-activity | |
| HTTP Scrapper | Maltiverse | 2022-10-17 12:35:15 | 2022-12-07 15:29:01 | anomalous-activity | |
| DDoS attack | Maltiverse | 2022-10-17 12:35:15 | 2022-11-12 02:58:45 | malicious-activity |
Tags
abuse ssh bruteforce bot mail spam attacker imap pop3 saslWhois information
- AS name
- AS4766 Korea Telecom
- AS registry
- apnic
- AS date
- 2004-08-02 00:00:00
- AS CIDR
- 59.0.0.0/13
- CIDR
- 59.0.0.0/11
- Registrant
- Korea Telecom
- Address
- Jeollanam-do Naju-si Jinheung-gil
- City
- Iksan
- Postal code
- 54658
- Country
- KR — Korea, Republic of 🇰🇷
- Contact email
- [email protected], [email protected]
- First indexed
- 2022-10-04 11:29:29
- Last updated
- 2026-08-28 07:36:46
Malicious IPs in the same CIDR
59.4.83.85 59.3.76.218 59.2.248.84 59.4.255.205 59.6.1.82 59.0.4.175 59.5.113.35 59.0.93.150 59.2.240.35 59.4.205.203 59.2.215.186 59.4.120.76 59.3.4.109 59.0.123.2