59.8.111.106

Classification: Malicious

59.8.111.106 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-30. Network: AS4766 Korea Telecom.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Blocklist.de 2024-09-02 12:08:45 2026-08-30 12:01:49 attacker malicious-activity
IMAP Attacker Blocklist.de 2024-09-03 10:54:57 2026-08-30 11:01:29 attacker malicious-activity
Malicious Host AbuseIPDB 2024-09-01 09:35:02 2026-06-04 03:00:06 compromised malicious-activity
Malicious Host HoneyDB 2026-06-01 00:00:00 2026-06-01 00:00:00 malicious-activity
Suspicious Host AbuseIPDB 2024-08-31 23:00:09 2026-05-08 13:07:38 anomalous-activity
SSH Attacker Blocklist.net.ua 2024-11-10 12:56:09 2025-11-09 00:15:45 malicious-activity
Mail Spammer Blocklist.de Mail 2025-10-08 03:03:27 2025-10-08 09:48:30 malicious-activity
Bruteforce AbuseIPDB 2024-08-31 21:02:09 2025-05-23 04:53:56 malicious-activity
SSH Attacker AbuseIPDB 2024-09-19 02:18:25 2025-05-15 11:27:31 malicious-activity
Port Scanner AbuseIPDB 2024-09-04 01:26:45 2025-05-15 11:27:31 anomalous-activity
Hacking AbuseIPDB 2024-08-31 20:51:15 2025-05-15 11:27:31 malicious-activity
Mail Spammer AbuseIPDB 2024-09-03 09:16:55 2025-05-14 09:31:08 malicious-activity
HTTP Attacker AbuseIPDB 2024-08-31 21:02:09 2025-03-21 10:57:02 malicious-activity
DDoS attack AbuseIPDB 2024-09-05 15:31:28 2025-03-10 00:50:29 malicious-activity
FTP Attacker AbuseIPDB 2025-03-04 13:27:09 2025-03-10 00:50:29 malicious-activity
IMAP Attacker AbuseIPDB 2024-09-12 15:50:00 2025-03-10 00:50:29 malicious-activity
DNS Compromise AbuseIPDB 2024-12-08 10:38:25 2025-03-04 13:27:09 compromised
Phishing AbuseIPDB 2025-01-05 05:00:49 2025-02-14 12:09:21 malicious-activity
Known Attacker AbuseIPDB 2025-02-11 00:23:42 2025-02-11 00:23:42 malicious-activity
HTTP Scrapper AbuseIPDB 2024-09-21 11:04:50 2025-02-06 06:50:10 anomalous-activity

Tags

mail spam attacker imap pop3 sasl bot abuse

Whois information

AS name
AS4766 Korea Telecom
AS registry
apnic
AS date
2004-08-02 00:00:00
AS CIDR
59.8.0.0/13
CIDR
59.0.0.0/11
Registrant
Korea Telecom
Address
Jeollanam-do Naju-si Jinheung-gil
City
Seongnam-si
Postal code
13608
Country
KR — Korea, Republic of 🇰🇷
Contact email
[email protected], [email protected]
First indexed
2024-09-01 06:17:13
Last updated
2026-08-30 12:01:49

Malicious IPs in the same CIDR

59.8.56.15 59.12.131.94 59.12.160.91 59.8.2.70 59.8.48.41 59.8.50.83 59.8.52.102 59.11.246.91 59.14.170.169 59.8.89.79 59.8.104.168 59.13.253.128 59.8.114.177 59.8.91.187 59.8.111.106 59.11.202.38 59.12.63.70 59.8.66.225 59.8.107.16 59.8.178.164 59.9.158.182 59.9.61.214 59.14.191.130