89.43.28.134

Classification: Malicious

89.43.28.134 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-03. Network: AS51559 Netinternet Bilisim Teknolojileri AS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.de 2026-08-06 14:03:45 2026-09-03 14:03:23 attacker malicious-activity
Malicious Host HoneyDB 2026-08-06 00:00:00 2026-08-17 00:00:00 attacker malicious-activity
SSH Attacker Blocklist.net.ua 2026-08-06 16:20:05 2026-08-13 16:02:27 attacker malicious-activity
Bruteforce AbuseIPDB 2026-08-04 18:44:43 2026-08-06 14:00:19 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-08-04 18:44:43 2026-08-06 14:00:19 attacker malicious-activity
Phishing AbuseIPDB 2026-08-06 10:55:17 2026-08-06 10:55:17 malicious-activity phishing
Mail Spammer AbuseIPDB 2026-08-06 10:55:17 2026-08-06 10:55:17 attacker malicious-activity
IMAP Attacker AbuseIPDB 2026-08-06 10:55:17 2026-08-06 10:55:17 attacker malicious-activity
Hacking AbuseIPDB 2026-08-05 06:00:04 2026-08-06 06:00:08 attacker malicious-activity
Port Scanner AbuseIPDB 2026-08-04 18:52:19 2026-08-06 06:00:08 anomalous-activity attacker malicious-activity reconnaissance
FTP Attacker AbuseIPDB 2026-08-05 17:22:43 2026-08-05 18:18:57 attacker malicious-activity

Tags

ssh bruteforce bot abuse

Whois information

AS name
AS51559 Netinternet Bilisim Teknolojileri AS
Registrant
Netinternet Bilisim Teknolojileri AS
City
Merkezefendi
Postal code
20030
Country
TR — Türkiye 🇹🇷
First indexed
2026-08-06 14:03:45
Last updated
2026-09-03 14:03:24