89.190.156.159

Classification: Malicious

89.190.156.159 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-05. Network: AS49870 Alsycon B.V..

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Barracuda 2026-08-05 22:34:18 2026-08-05 22:34:18 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2022-06-19 04:17:12 2023-12-06 14:03:31 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2022-06-19 04:17:09 2023-12-06 14:03:21 malicious-activity
Malicious Host CIArmy 2022-06-15 01:48:15 2023-12-05 08:10:19 malicious-activity
Bashlite ThreatFox Abuse.ch 2023-11-26 14:17:09 2023-11-28 13:18:12 malicious-activity
Malware Download URLhaus Abuse.ch 2023-11-09 20:20:23 2023-11-18 21:18:19 malicious-activity

Tags

32 port:671 gayfgt gafgyt qbot torlus lizkebab

Whois information

AS name
AS49870 Alsycon B.V.
AS registry
ripencc
AS date
2018-10-10 00:00:00
AS CIDR
89.190.156.0/24
CIDR
89.190.156.0/24
Registrant
Alsycon B.V.
Address
Bruynvisweg 11 1531 AX Wormer NETHERLANDS
City
Zaanstad
Postal code
1506 LS
Country
NL — Netherlands 🇳🇱
Contact email
[email protected]
First indexed
2022-06-15 01:48:15
Last updated
2026-08-05 22:34:18

Malicious IPs in the same CIDR

89.190.156.227 89.190.156.41 89.190.156.21 89.190.156.34 89.190.156.231 89.190.156.25 89.190.156.143 89.190.156.39 89.190.156.176 89.190.156.22 89.190.156.159