121.224.59.51

Classification: Malicious

121.224.59.51 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-11. Network: AS4134 CHINANET jiangsu province network.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Empty reason Blocklist.net.ua 2026-09-04 16:51:06 2026-09-11 16:50:30 attacker malicious-activity
SSH Attacker Blocklist.net.ua 2026-08-03 16:01:34 2026-09-05 16:48:10 attacker malicious-activity
SSH Attacker Blocklist.de 2026-08-03 14:00:13 2026-08-17 14:00:15 attacker malicious-activity
Malicious Host HoneyDB 2026-08-04 00:00:00 2026-08-04 00:00:00 attacker malicious-activity
Port Scanner AbuseIPDB 2026-08-01 13:43:27 2026-08-03 10:54:37 anomalous-activity attacker malicious-activity reconnaissance
SSH Attacker AbuseIPDB 2026-08-01 08:50:41 2026-08-03 10:54:37 attacker malicious-activity
Bruteforce AbuseIPDB 2026-08-01 08:50:41 2026-08-03 08:50:18 attacker malicious-activity
Hacking AbuseIPDB 2026-08-01 19:04:25 2026-08-01 19:04:25 attacker malicious-activity

Tags

ssh bruteforce bot abuse

Whois information

AS name
AS4134 CHINANET jiangsu province network
Registrant
CHINANET jiangsu province network
City
Nanjing
Postal code
210005
Country
CN — China 🇨🇳
First indexed
2026-08-03 14:00:13
Last updated
2026-09-11 16:50:30