172.104.20.119
Classification: Malicious
172.104.20.119 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-18. Network: AS63949 Linode.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2023-07-05 02:39:40 | 2026-08-18 06:45:02 | attacker malicious-activity | |
| HTTP Spammer | StopForumSpam.com | 2023-07-28 02:07:04 | 2023-10-09 03:19:25 | malicious-activity | |
| Proxy | FireHOL | 2023-07-05 02:39:39 | 2023-08-26 02:00:38 | anonymization | |
| HTTP Spammer | Sblam | 2023-07-05 20:44:49 | 2023-07-27 19:56:12 | malicious-activity | |
| Mail Spammer | Blocklist.de | 2023-07-17 03:28:14 | 2023-07-18 03:29:09 | malicious-activity | |
| IMAP Attacker | Blocklist.de | 2023-07-17 03:23:02 | 2023-07-18 03:23:39 | malicious-activity | |
| Mail Spammer | Abuseat.org | 2023-07-05 02:39:40 | 2023-07-05 02:39:40 |
Tags
bot abuse anonymization mail spam attacker imap pop3 saslWhois information
- AS name
- AS63949 Linode
- AS registry
- arin
- AS date
- 2015-06-19 00:00:00
- AS CIDR
- 172.104.16.0/20
- CIDR
- 172.104.0.0/15
- Registrant
- Linode
- Address
- 145 Broadway
- City
- Cedar Knolls
- State
- NJ
- Postal code
- 07927
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2023-07-05 02:39:39
- Last updated
- 2026-08-18 06:45:04
Malicious IPs in the same CIDR
172.104.30.66 172.104.19.160 172.104.24.103 172.104.24.4 172.104.31.42 172.104.30.190 172.104.17.5 172.104.31.208 172.104.20.119 172.104.30.97