184.105.139.122
Classification: Malicious
184.105.139.122 is a malicious IP address. Reported by 8 threat sources, last seen 2026-09-12. Network: AS6939 The Shadow Server Foundation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Empty reason | Blocklist.net.ua | 2026-09-12 16:09:19 | 2026-09-12 16:09:19 | attacker malicious-activity | |
| Unauthorized scanning of hosts | Blocklist.net.ua | 2020-07-15 03:13:10 | 2026-09-09 16:08:51 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2024-07-01 22:33:15 | 2026-06-07 16:03:46 | compromised malicious-activity | |
| Malicious Host | HoneyDB | 2019-07-08 00:00:00 | 2026-04-12 00:00:00 | malicious-activity | |
| Hacking | AbuseIPDB | 2024-07-15 01:59:06 | 2025-06-15 00:40:52 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2024-07-12 03:04:15 | 2025-06-14 22:45:21 | anomalous-activity | |
| Bruteforce | AbuseIPDB | 2024-07-12 05:32:50 | 2025-06-14 20:07:19 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2024-07-12 15:55:27 | 2025-06-13 17:56:01 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2024-07-12 05:32:50 | 2025-06-13 09:41:21 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2024-10-14 15:26:11 | 2025-06-10 18:18:04 | anomalous-activity | |
| SQL Injection | AbuseIPDB | 2024-08-19 09:47:47 | 2025-06-06 17:05:58 | malicious-activity | |
| Known Attacker | AbuseIPDB | 2025-03-24 03:08:49 | 2025-06-04 04:29:12 | malicious-activity | |
| Mail Spammer | AbuseIPDB | 2024-07-18 08:30:20 | 2025-06-02 14:41:54 | malicious-activity | |
| IoT Attacker | AbuseIPDB | 2024-12-27 18:21:08 | 2025-05-28 00:24:55 | malicious-activity | |
| DDoS attack | AbuseIPDB | 2024-07-12 03:18:41 | 2025-05-28 00:24:55 | malicious-activity | |
| FTP Attacker | AbuseIPDB | 2025-01-16 21:05:59 | 2025-05-19 00:03:13 | malicious-activity | |
| IMAP Attacker | AbuseIPDB | 2024-07-26 17:34:01 | 2025-04-05 01:22:01 | malicious-activity | |
| Phishing | AbuseIPDB | 2024-10-16 17:47:28 | 2024-10-16 17:47:28 | malicious-activity | |
| Malicious Host | Alienvault Ip Reputation Database | 2017-10-15 10:12:23 | 2020-11-30 06:33:55 | malicious-activity | |
| Malicious Host | CIArmy | 2017-11-11 22:35:39 | 2020-11-09 02:18:38 | ||
| DDoS attack | Blocklist.net.ua | 2020-05-14 01:43:32 | 2020-07-14 03:06:01 | ||
| Scanning IPs | IBM X-Force Exchange | 2014-04-16 09:20:00 | 2020-03-29 06:52:00 | ||
| DDoS Attacker | Blocklist.net.ua | 2019-09-02 07:30:33 | 2019-12-03 07:26:10 | ||
| Shadowserver | Greynoise | 2018-04-26 00:00:00 | 2019-07-31 00:00:00 | ||
| Malicious Host | GreenSnow | 2017-11-29 14:05:45 | 2017-11-29 14:05:45 | ||
| Bots | IBM X-Force Exchange | 2015-12-28 21:17:00 | 2017-01-27 22:18:00 |
Tags
abuse researcherWhois information
- AS name
- AS6939 The Shadow Server Foundation
- AS registry
- arin
- AS date
- 2010-05-10 00:00:00
- AS CIDR
- 184.104.0.0/15
- CIDR
- 184.104.0.0/15
- Registrant
- The Shadow Server Foundation
- Address
- 760 Mission Court
- City
- Pleasanton
- State
- CA
- Postal code
- 94566
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2017-10-15 10:12:23
- Last updated
- 2026-09-12 16:09:37
Malicious IPs in the same CIDR
184.105.139.125 184.105.139.90 184.105.139.91 184.105.139.95 184.105.139.103 184.105.139.107 184.105.139.122 184.105.247.222 184.105.247.235 184.105.247.238 184.105.139.74 184.105.139.75 184.105.139.106 184.105.139.124 184.105.247.200 184.105.247.247 184.105.139.72 184.105.247.198 184.105.247.199 184.105.247.236 184.105.247.243 184.105.139.79 184.105.139.92 184.105.139.94 184.105.139.113