167.172.139.120
Classification: Whitelisted
167.172.139.120 is a whitelisted (trusted) IP address. Reported by 10 threat sources, last seen 2026-06-28. Network: AS14061 Digitalocean, LLC.
Current activity
- Hosting provider — Shared hosting infrastructure.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Hosting Provider | Maltiverse | 2026-06-28 14:05:21 | 2026-06-28 14:05:21 | benign | |
| Malicious Host | AbuseIPDB | 2025-02-20 00:36:21 | 2025-03-28 10:23:40 | compromised malicious-activity | |
| Port Scanner | AbuseIPDB | 2025-02-22 15:05:38 | 2025-03-21 23:45:49 | anomalous-activity | |
| Bruteforce | AbuseIPDB | 2025-02-25 18:42:58 | 2025-03-21 22:20:12 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2025-02-25 18:42:58 | 2025-03-21 22:20:12 | malicious-activity | |
| Hacking | AbuseIPDB | 2025-02-26 20:40:30 | 2025-03-21 14:05:11 | malicious-activity | |
| DDoS attack | AbuseIPDB | 2025-02-26 12:18:35 | 2025-03-21 14:05:11 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2025-02-19 17:47:52 | 2025-03-19 22:25:03 | malicious-activity | |
| Malicious Host | CIArmy | 2025-02-28 07:03:07 | 2025-03-14 14:18:25 | malicious-activity | |
| SIP Attacker | AbuseIPDB | 2025-03-04 05:08:18 | 2025-03-04 05:08:18 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2025-03-01 01:09:57 | 2025-03-03 00:07:15 | anomalous-activity | |
| Mail Spammer | AbuseIPDB | 2025-02-26 19:45:43 | 2025-02-26 21:48:03 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2025-02-25 23:08:36 | 2025-02-25 23:08:36 | anomalous-activity | |
| FTP Attacker | AbuseIPDB | 2025-02-25 19:17:06 | 2025-02-25 19:17:06 | malicious-activity | |
| Phishing | OpenPhish | 2022-05-16 00:35:57 | 2022-07-07 00:41:57 | compromised malicious-activity | |
| Phishing | Phishtank | 2021-03-04 07:20:11 | 2022-07-04 22:20:10 | compromised malicious-activity | |
| Phishing | Maltiverse | 2021-02-22 12:43:35 | 2022-05-12 00:41:11 | compromised | |
| Social Engineering | Phishtank | 2022-03-17 12:21:55 | 2022-03-17 12:21:55 | malicious-activity | |
| Malware | Hybrid-Analysis | 2021-06-23 03:30:12 | 2021-10-17 11:30:15 | ||
| Phishing site | Hybrid-Analysis | 2021-04-07 03:21:13 | 2021-09-21 05:45:18 | ||
| Malware site | Hybrid-Analysis | 2021-06-15 07:00:43 | 2021-06-15 07:00:44 | ||
| Malicious url | Cyber Threat Coalition | 2021-02-28 13:43:16 | 2021-05-02 21:43:20 | malicious-activity | |
| Generic.Malware | Hybrid-Analysis | 2021-02-25 20:00:10 | 2021-04-30 01:21:12 | ||
| Social Engineering | Maltiverse | 2021-03-11 12:40:25 | 2021-04-28 13:42:49 | malicious-activity | |
| Injector.EOWC | Hybrid-Analysis | 2021-03-16 13:45:38 | 2021-03-16 13:45:38 | ||
| virut | Maltiverse Research Team | 2021-03-06 01:13:58 | 2021-03-06 01:13:58 | malicious-activity | |
| Malicious Hostname | Cyber Threat Coalition | 2021-02-22 10:21:26 | 2021-03-04 00:17:16 | malicious-activity | |
| Web | Mr.Looquer | 2021-03-02 13:19:13 | 2021-03-03 01:41:03 | ||
| Phishing | Mr.Looquer | 2021-02-27 01:57:24 | 2021-03-03 01:38:57 | ||
| Malicious site | Hybrid-Analysis | 2021-03-01 10:00:26 | 2021-03-02 12:00:12 | ||
| Facebook phishing | Antiphishing.com.ar | 2021-02-26 19:49:13 | 2021-02-26 19:49:13 | ||
| Social Engineering | Antiphishing.com.ar | 2021-02-26 19:49:13 | 2021-02-26 19:49:13 | malicious-activity |
Tags
phishing fraud coinminer c&c c2 dgaWhois information
- AS name
- AS14061 Digitalocean, LLC
- AS registry
- ripencc
- AS date
- 1993-08-30 00:00:00
- AS CIDR
- 167.172.128.0/20
- Registrant
- Digitalocean, LLC
- City
- North Bergen
- State
- NJ
- Postal code
- 07047
- Country
- US — United States 🇺🇸
- First indexed
- 2021-02-22 10:21:26
- Last updated
- 2026-06-28 14:05:21
Malicious IPs in the same CIDR
167.172.129.109 167.172.136.12 167.172.138.147 167.172.131.98 167.172.129.25 167.172.138.48 167.172.138.187 167.172.138.229 167.172.129.130 167.172.133.85