AbuseIPDB » 172.203.212.21
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 172.203.212.21:
This IP address has been reported a total of 272 times from 91 distinct sources. 172.203.212.21 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 143 reports; Germany with 34 reports; Brazil with 20 reports. The most common categories in these recent reports were: Port Scan 233 times; Hacking 44 times; Brute-Force 36 times; Web App Attack 16 times; SSH 14 times; Other 21 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| 🇺🇦 TawnyBalfour |
MSSQL honeypot. Target port: 1433. Window: 2026-09-10 04:23 to 2026-09-10 04:23 UTC.
|
Port Scan | ||
| 🇧🇷 noconex |
|
Port Scan Brute-Force SSH | ||
| 🇫🇮 6kilowatti |
|
Port Scan | ||
| 🇨🇦 celestialcity |
|
Port Scan | ||
| 🇫🇷 security.rdmc.fr |
Port Scan Attack proto:TCP src:49085 dst:5432
|
Port Scan | ||
| 🇩🇪 dispaisyenterprises |
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/1830 (2 or more attempts)
|
Port Scan | ||
| 🇩🇪 paradox-hub.fr |
vps-secure / CrowdSec: scan de ports détecté (PortSentry)
|
Brute-Force | ||
| 🇺🇸 schematics.cc |
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/9042 (2 or more attempts)
|
Port Scan | ||
| 🇺🇸 MPL |
tcp/47808
|
Port Scan | ||
| 🇫🇷 vtchost.com |
portscan
...
|
Port Scan | ||
| 🇧🇷 diego |
|
Hacking | ||
| 🇳🇱 donarev419 |
Connection to port 2000 with data transfer.
Data preview: d�
|
Port Scan Hacking | ||
| 🇺🇸 MPL |
tcp/8888
|
Port Scan |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩