172.104.30.97
Classification: Malicious
172.104.30.97 is a malicious IP address. Reported by 3 threat sources, last seen 2026-08-14. Network: AS63949 Linode.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | HoneyDB | 2026-08-14 00:00:00 | 2026-08-14 00:00:00 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2025-05-24 21:28:09 | 2025-06-23 08:15:38 | anomalous-activity | |
| HTTP Attacker | Blocklist.de | 2021-12-12 04:34:27 | 2021-12-13 04:48:22 | malicious-activity |
Tags
apache ddos rfi attackerWhois information
- AS name
- AS63949 Linode
- AS registry
- arin
- AS date
- 2015-06-19 00:00:00
- AS CIDR
- 172.104.16.0/20
- CIDR
- 172.104.0.0/15
- Registrant
- Linode
- Address
- 249 Arch St
- City
- Hanover
- State
- NJ
- Postal code
- 07981
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2021-12-12 04:34:27
- Last updated
- 2026-08-14 22:01:20
Malicious IPs in the same CIDR
172.104.30.66 172.104.19.160 172.104.24.103 172.104.24.4 172.104.31.42 172.104.30.190 172.104.17.5 172.104.31.208 172.104.20.119 172.104.30.97