172.104.238.141
Classification: Malicious
172.104.238.141 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-02. Network: AS63949 Linode.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | CIArmy | 2026-08-26 20:03:18 | 2026-09-02 20:03:04 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-08-27 09:13:57 | 2026-09-01 09:13:28 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-08-27 09:13:55 | 2026-09-01 09:13:26 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-05-15 17:26:22 | 2026-05-30 03:22:56 | anomalous-activity |
Whois information
- AS name
- AS63949 Linode
- Registrant
- Linode
- City
- Frankfurt
- Postal code
- 60311
- Country
- DE — Germany 🇩🇪
- First indexed
- 2026-05-16 01:34:43
- Last updated
- 2026-09-02 20:03:04