AbuseIPDB » 81.21.9.226

81.21.9.226 was found in our database!

This IP was reported 701 times. Confidence of Abuse is 100%: ?

100%
ISP VTEL HOLDINGS LIMITED/JORDAN CO.
Usage Type Fixed Line ISP
ASN AS50670
Domain Name vtel.jo
Country ๐Ÿ‡ฏ๐Ÿ‡ด Jordan
City Amman, Amman

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 81.21.9.226:

This IP address has been reported a total of 701 times from 141 distinct sources. 81.21.9.226 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ฉ๐Ÿ‡ช iNetWorker
firewall-block, port(s): 445/tcp
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช Mailguard-FRD
1783089045 - 07/03/2026 16:30:45 Host: 81.21.9.226/81.21.9.226 Port: 1433 TCP Blocked ...
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ cwytech
Fleet-wide ban from the Ghostfleet ๐Ÿ‘ป. Triggered by scenario: cwy/global-exclusion-high.
Hacking
๐Ÿ‡ซ๐Ÿ‡ท Fasetech
SecLedge detected suspicious activity. Score: 175.56. Sensor: T-Pot.
Brute-Force Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-07-02 06:12:32 UTC Unauthorized activity to TCP port 445. SMB
Port Scan
๐Ÿ‡ฆ๐Ÿ‡บ dyln
Dyls honeypot brute-force: SMB (13 total hits)
Brute-Force
๐Ÿ‡ง๐Ÿ‡ท ICS Labs
ICS Labs identified 81.21.9.226 as a malicious indicator from threat intelligence.
DDoS Attack Port Scan Hacking Brute-Force Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ drewf.ink
[13:26] Triggered SMB honeypot on port 445. Type: NetBIOS + SMB1. Dialect(s): NT LM 0.12
Hacking Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ donarev419
Connection to port 1433 with data transfer. Data preview: 
Port Scan Hacking
๐Ÿ‡ฆ๐Ÿ‡บ dyln
Dyls honeypot brute-force: SMB (10 total hits)
Brute-Force
๐Ÿ‡ฆ๐Ÿ‡บ LiftUp Hosting
Honeypot hit: SMB traffic on port 445
Hacking
๐Ÿ‡ท๐Ÿ‡ธ Smel
SQL/MH Probe, Scan, Hack -
Port Scan Hacking SQL Injection
๐Ÿ‡ญ๐Ÿ‡ฐ mutebot.net
SRC=81.21.9.226, PROTO=TCP, SPT=41177, DPT=445
Port Scan
๐Ÿ‡ท๐Ÿ‡ธ Smel
SQL/MH Probe, Scan, Hack -
Port Scan Hacking SQL Injection
๐Ÿ‡ฆ๐Ÿ‡น urnilxfgbez
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan

Showing 1 to 15 of 701 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ญ๐Ÿ‡ฐ 141.11.173.193
๐Ÿ‡บ๐Ÿ‡ธ 45.33.14.5
๐Ÿ‡ฎ๐Ÿ‡ณ 43.248.152.68
๐Ÿ‡บ๐Ÿ‡ธ 40.119.40.156
๐Ÿ‡ฌ๐Ÿ‡ง 185.108.105.241
๐Ÿ‡บ๐Ÿ‡ธ 172.185.24.228
๐Ÿ‡ฏ๐Ÿ‡ต 164.52.24.180
๐Ÿ‡ฎ๐Ÿ‡ณ 103.187.78.189
๐Ÿ‡ฆ๐Ÿ‡ฑ 91.132.173.162
๐Ÿ‡บ๐Ÿ‡ธ 74.125.186.94
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.157
๐Ÿ‡บ๐Ÿ‡ธ 45.33.42.25
๐Ÿ‡ป๐Ÿ‡ณ 14.186.45.113
๐Ÿ‡บ๐Ÿ‡ธ 2a10:3c0:4:0:1:26:0:5
๐Ÿ‡ธ๐Ÿ‡ฌ 194.233.76.209
๐Ÿ‡ฒ๐Ÿ‡ฝ 189.217.207.173
๐Ÿ‡จ๐Ÿ‡ด 179.51.119.166
๐Ÿ‡ฉ๐Ÿ‡ช 178.104.108.237
๐Ÿ‡ณ๐Ÿ‡ฑ 178.16.53.108