IP address 156.224.18.21 has been flagged in 96 abuse reports across 4 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is aggregated threat, along with malware c2, malware infrastructure.
This IP is geolocated in Hong Kong (Hong Kong) and belongs to the network CORENET CLOUD SDN. BHD. (AS154321). Reports span from 2026-07-30 to 2026-08-21.
Assessment: Despite a lower report volume, the severity and nature of activity from 156.224.18.21 has triggered critical-level alerts across our threat detection network. The activity pattern and multi-source corroboration indicate this is a genuine threat that warrants immediate blocking at the firewall level.