AbuseIPDB » 172.121.221.9
172.121.221.9 was found in our database!
This IP was reported 10 times. Confidence of
Abuse
is 9% : ?
ISP
EGIHosting
Usage Type
Fixed Line ISP
ASN
AS3257
Domain Name
egihosting.com
Country
๐บ๐ธ
United States of America
City
Santa Clara, California
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 172.121.221.9 :
This IP address has been reported a total of
10
times from
8 distinct
sources.
172.121.221.9 was first reported on
November 14th 2022 , and the most recent report was
2 weeks ago .
Old Reports:
The most recent abuse report for this IP address is from
2 weeks ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฎ๐ฉ
Diana Koswari
2026-09-03 05:08:00
(2 weeks ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
๐ฎ๐ฉ
David Koswari
2026-09-03 04:16:00
(2 weeks ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
Anonymous
2026-05-02 09:39:07
(4 months ago)
CVE-2020-1967 - Signature Algorithms Cert Denial of Service - HTTPS (Request)
Hacking
๐จ๐ณ
ThreatBook.io
2025-11-25 22:50:34
(9 months ago)
ThreatBook Intelligence: Zombie,vpn_proxy more details on https://threatbook.io/ip/172.121.221.9
202 ...
show more
ThreatBook Intelligence: Zombie,vpn_proxy more details on https://threatbook.io/ip/172.121.221.9
2025-11-25 07:10:32 /
2025-11-25 07:10:31 /
show less
Web App Attack
๐ฆ๐บ
advena
2025-09-28 11:30:58
(11 months ago)
172.121.221.9 (AS3257 GTT-BACKBONE GTT) was intercepted at 2025-09-28T11:25:03Z after violating WAF ...
show more
172.121.221.9 (AS3257 GTT-BACKBONE GTT) was intercepted at 2025-09-28T11:25:03Z after violating WAF directive: 874a3e315c344b1281ad4f00046aab6f. Pre-cautionary/corrective action applied: managed_challenge.
show less
Web Spam
Hacking
Brute-Force
Web App Attack
Anonymous
2025-05-18 06:02:11
(1 year ago)
Web attack
Bad Web Bot
Web App Attack
๐ท๐ธ
Smel
2024-01-12 10:03:45
(2 years ago)
Unauthorized Probe/Connection, Hack -
Port Scan
Hacking
๐ท๐ธ
Smel
2023-11-14 14:07:00
(2 years ago)
Unauthorized Probe/Connection, Hack -
Port Scan
Hacking
๐จ๐ณ
ThreatBook.io
2023-02-07 22:13:15
(3 years ago)
ThreatBook Intelligence: Zombie more details on http://threatbook.io/ip/172.121.221.9
2023-02-07 16: ...
show more
ThreatBook Intelligence: Zombie more details on http://threatbook.io/ip/172.121.221.9
2023-02-07 16:37:00 /docs/
2023-02-07 16:35:17 /robots.txt
2023-02-07 16:35:45 /docs/deployer-howto.html
2023-02-07 16:36:46 /docs/setup.html
2023-02-07 16:36:49 /docs/
2023-02-07 16:34:32 /
2023-02-07 16:36:10 /docs/changelog.html
2023-02-07 16:35:44 /robots.txt
2023-02-07 16:37:07 /docs/api/index.html
2023-02-07 16:36:20 /docs/changelog.html
show less
Web App Attack
๐ฎ๐ฉ
hermawan
2022-11-14 10:53:01
(3 years ago)
[Mon Nov 14 22:52:55.421081 2022] [-:error] [pid 35694:tid 139888412173888] [client 172.121.221.9:10 ...
show more
[Mon Nov 14 22:52:55.421081 2022] [-:error] [pid 35694:tid 139888412173888] [client 172.121.221.9:10349] [client 172.121.221.9] ModSecurity: Access denied with code 403 (phase 1). Match of "pm AppleWebKit Android" against "REQUEST_HEADERS:User-Agent" required. [file "/etc/modsecurity/coreruleset-4.0.0-rc1/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1777"] [id "920300"] [msg "Request Missing an Accept Header"] [data "Matched Data: connection found within REQUEST_HEADERS:User-Agent: Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1) request_line = GET / HTTP/1.1"] [severity "NOTICE"] [ver "OWASP_CRS/4.0.0-rc1"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/6.5.10"] [tag "paranoia-level/3"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "Y3JkV4l8OJlsSl7lcd_Y2AAAABA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[35732] [W+2WOwBAaXY] [Y3JkV4l8OJlsSl7lcd
...
show less
Hacking
Web App Attack
Showing 1 to
10
of 10 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: