AbuseIPDB » 138.121.85.4

138.121.85.4 was found in our database!

This IP was reported 14 times. Confidence of Abuse is 37%: ?

37%
ISP CORTUC S.A.
Usage Type Fixed Line ISP
ASN AS263789
Hostname(s) customer-4-85-121-138.fonoglobal.com.ar
Domain Name fonoglobal.com.ar
Country ๐Ÿ‡ฆ๐Ÿ‡ท Argentina
City Buenos Aires, Buenos Aires F.D.

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 138.121.85.4:

This IP address has been reported a total of 14 times from 14 distinct sources. 138.121.85.4 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
Anonymous
Fail2Ban: Automated WooCommerce filter abuse from distributed botnet activity.
Bad Web Bot
๐Ÿ‡ซ๐Ÿ‡ท Zkillu
DDoS Attack Exploited Host
๐Ÿ‡ซ๐Ÿ‡ท dmallet
DDoS Attack Exploited Host
Anonymous
SSH tarpit (endlessh) connection from 138.121.85.4
Brute-Force SSH
๐Ÿ‡ฉ๐Ÿ‡ช guldkage
Unauthorized connection attempt detected from IP address 138.121.85.4 to port 23 (ger-02) [TELNET]
Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ wbsouza
CrowdSec: infra/ssh22-probe โ€” automated firewall drops on self-hosted IDS sensor
SSH Brute-Force
Anonymous
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช Vegascosmetics
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack Hacking Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
๐Ÿ‡จ๐Ÿ‡ฆ polycoda
๐Ÿฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack
๐Ÿ‡ฉ๐Ÿ‡ช SMARTNET
Aisuru(Mirai variant) DDoS | Incident ID: f33ea243-b344-42fe-b994-8adedb9f85ca
DDoS Attack
Anonymous
scanning http requests from known botnet
Web App Attack
๐Ÿ‡ณ๐Ÿ‡ฑ exxos
Attacks with Bad user agents
Hacking
Anonymous
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force SSH

Showing 1 to 14 of 14 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฆ๐Ÿ‡ท 186.158.120.189
๐Ÿ‡จ๐Ÿ‡ณ 182.242.168.167
๐Ÿ‡ฎ๐Ÿ‡ฉ 108.137.33.31
๐Ÿ‡ง๐Ÿ‡ฉ 103.213.238.91
๐Ÿ‡บ๐Ÿ‡ธ 54.173.125.255
๐Ÿ‡ท๐Ÿ‡ด 2.57.122.209
๐Ÿ‡จ๐Ÿ‡ณ 220.197.85.39
๐Ÿ‡ฉ๐Ÿ‡ช 217.154.120.73
๐Ÿ‡ฎ๐Ÿ‡ท 217.60.255.130
๐Ÿ‡จ๐Ÿ‡ณ 182.138.158.40
๐Ÿ‡บ๐Ÿ‡ธ 147.182.200.22
๐Ÿ‡บ๐Ÿ‡ธ 104.168.115.229
๐Ÿ‡ณ๐Ÿ‡ฑ 91.92.40.151
๐Ÿ‡ฉ๐Ÿ‡ช 80.150.6.150
๐Ÿ‡ณ๐Ÿ‡ฑ 45.198.224.26
๐Ÿ‡บ๐Ÿ‡ธ 35.243.229.176
๐Ÿ‡ณ๐Ÿ‡ฑ 20.229.185.186
๐Ÿ‡บ๐Ÿ‡ธ 216.73.217.68
๐Ÿ‡ฐ๐Ÿ‡ช 196.96.19.159
๐Ÿ‡ณ๐Ÿ‡ฑ 195.178.110.137