59.8.111.106
Classification: Malicious
59.8.111.106 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-30. Network: AS4766 Korea Telecom.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Blocklist.de | 2024-09-02 12:08:45 | 2026-08-30 12:01:49 | attacker malicious-activity | |
| IMAP Attacker | Blocklist.de | 2024-09-03 10:54:57 | 2026-08-30 11:01:29 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2024-09-01 09:35:02 | 2026-06-04 03:00:06 | compromised malicious-activity | |
| Malicious Host | HoneyDB | 2026-06-01 00:00:00 | 2026-06-01 00:00:00 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-08-31 23:00:09 | 2026-05-08 13:07:38 | anomalous-activity | |
| SSH Attacker | Blocklist.net.ua | 2024-11-10 12:56:09 | 2025-11-09 00:15:45 | malicious-activity | |
| Mail Spammer | Blocklist.de Mail | 2025-10-08 03:03:27 | 2025-10-08 09:48:30 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2024-08-31 21:02:09 | 2025-05-23 04:53:56 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2024-09-19 02:18:25 | 2025-05-15 11:27:31 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2024-09-04 01:26:45 | 2025-05-15 11:27:31 | anomalous-activity | |
| Hacking | AbuseIPDB | 2024-08-31 20:51:15 | 2025-05-15 11:27:31 | malicious-activity | |
| Mail Spammer | AbuseIPDB | 2024-09-03 09:16:55 | 2025-05-14 09:31:08 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2024-08-31 21:02:09 | 2025-03-21 10:57:02 | malicious-activity | |
| DDoS attack | AbuseIPDB | 2024-09-05 15:31:28 | 2025-03-10 00:50:29 | malicious-activity | |
| FTP Attacker | AbuseIPDB | 2025-03-04 13:27:09 | 2025-03-10 00:50:29 | malicious-activity | |
| IMAP Attacker | AbuseIPDB | 2024-09-12 15:50:00 | 2025-03-10 00:50:29 | malicious-activity | |
| DNS Compromise | AbuseIPDB | 2024-12-08 10:38:25 | 2025-03-04 13:27:09 | compromised | |
| Phishing | AbuseIPDB | 2025-01-05 05:00:49 | 2025-02-14 12:09:21 | malicious-activity | |
| Known Attacker | AbuseIPDB | 2025-02-11 00:23:42 | 2025-02-11 00:23:42 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2024-09-21 11:04:50 | 2025-02-06 06:50:10 | anomalous-activity |
Tags
mail spam attacker imap pop3 sasl bot abuseWhois information
- AS name
- AS4766 Korea Telecom
- AS registry
- apnic
- AS date
- 2004-08-02 00:00:00
- AS CIDR
- 59.8.0.0/13
- CIDR
- 59.0.0.0/11
- Registrant
- Korea Telecom
- Address
- Jeollanam-do Naju-si Jinheung-gil
- City
- Seongnam-si
- Postal code
- 13608
- Country
- KR — Korea, Republic of 🇰🇷
- Contact email
- [email protected], [email protected]
- First indexed
- 2024-09-01 06:17:13
- Last updated
- 2026-08-30 12:01:49
Malicious IPs in the same CIDR
59.8.56.15 59.12.131.94 59.12.160.91 59.8.2.70 59.8.48.41 59.8.50.83 59.8.52.102 59.11.246.91 59.14.170.169 59.8.89.79 59.8.104.168 59.13.253.128 59.8.114.177 59.8.91.187 59.8.111.106 59.11.202.38 59.12.63.70 59.8.66.225 59.8.107.16 59.8.178.164 59.9.158.182 59.9.61.214 59.14.191.130