140.228.21.90
Classification: Malicious
140.228.21.90 is a malicious IP address. Reported by 6 threat sources, last seen 2026-09-13. Network: AS174 Rockion LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| HTTP Spammer | StopForumSpam.com | 2023-12-15 04:27:16 | 2026-09-13 07:20:26 | attacker malicious-activity | |
| VPN | IPWhois.io | 2026-09-04 15:18:54 | 2026-09-04 15:18:54 | anonymization vpn | |
| Suspicious Host | AbuseIPDB | 2025-11-04 10:34:35 | 2026-04-22 20:49:34 | anomalous-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-03-30 05:00:22 | 2026-03-31 05:00:20 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-03-30 03:00:23 | 2026-03-31 03:00:23 | malicious-activity | |
| Proxy | FireHOL | 2024-04-11 16:47:37 | 2024-05-06 20:03:42 | anonymization | |
| Mail Spammer | Abuseat.org | 2023-12-15 04:27:17 | 2023-12-15 04:27:17 |
Tags
bot abuse anonymization apache ddos rfi attacker login bruteforce joomla wordpressWhois information
- AS name
- AS174 Rockion LLC
- AS registry
- arin
- AS date
- 2021-08-05 00:00:00
- AS CIDR
- 140.228.21.0/24
- CIDR
- 140.228.16.0/20
- Registrant
- Rockion LLC
- Address
- 685 East 380 South
- City
- Montreal
- State
- UT
- Postal code
- H3A 2B7
- Country
- CA — Canada 🇨🇦
- Contact email
- [email protected]
- First indexed
- 2023-12-15 04:27:16
- Last updated
- 2026-09-13 07:20:26
Malicious IPs in the same CIDR
140.228.21.126 140.228.21.82 140.228.21.11 140.228.21.90 140.228.21.117 140.228.21.216 140.228.21.99 140.228.21.227 140.228.21.125 140.228.21.142 140.228.21.91 140.228.21.13 140.228.21.96 140.228.21.116 140.228.21.218 140.228.21.221 140.228.21.97 140.228.21.128