139.170.72.21

Classification: Malicious

139.170.72.21 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-04. Network: AS4837 China Unicom Qinghai Province Network.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-06-16 11:17:08 2026-09-04 09:10:46 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-06-16 11:17:05 2026-09-04 09:10:44 malicious-activity
Malicious Host CIArmy 2026-06-15 20:45:13 2026-09-01 20:02:00 attacker malicious-activity
Malicious Host HoneyDB 2026-08-22 00:00:00 2026-08-22 00:00:00 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-06-06 03:58:47 2026-06-06 03:58:47 anomalous-activity

Whois information

AS name
AS4837 China Unicom Qinghai Province Network
Registrant
China Unicom Qinghai Province Network
City
Xining
Postal code
810000
Country
CN — China 🇨🇳
First indexed
2026-06-07 00:22:27
Last updated
2026-09-04 09:11:11