Report for IP: 209.99.188.121

Threat LevelHIGH54/1002 rule types across 2 attack categories
24 incidents · 2 rule types · confirmed on global blocklist · persistent 23-day campaign · last seen 30d ago
PTR N/A
Org / ASN HostRoyale Technologies
Country 🇨🇭 Switzerland
City Zurich, Zurich
Timezone Europe/Zurich

Attack Analysis

IDS: Blocklist — Spamhaus DROP
This IP is on the Spamhaus DROP list — a dataset of netblocks hijacked or leased by professional spam and cybercrime operations with no legitimate users. Traffic from DROP-listed ranges is considered hostile by design. Blocking is unconditional.
IDS: SIPVicious VoIP Scanner
SIPVicious is an automated tool that scans for SIP/VoIP infrastructure to harvest extension numbers and brute-force credentials. A successful scan enables toll fraud, eavesdropping, and unauthorized calls billed to the victim.

Reports (24)

Date Severity Description
9 Aug 2026 - 19:42 high IDS: Blocklist — Spamhaus DROP listed IP — ET DROP Spamhaus DROP Listed Traffic Inbound group 63
9 Aug 2026 - 19:42 medium IDS: SIPVicious VoIP scanner — ET SCAN Sipvicious User-Agent Detected (friendly-scanner)
8 Aug 2026 - 10:44 high IDS: Blocklist — Spamhaus DROP listed IP — ET DROP Spamhaus DROP Listed Traffic Inbound group 63
8 Aug 2026 - 10:44 medium IDS: SIPVicious VoIP scanner — ET SCAN Sipvicious User-Agent Detected (friendly-scanner)