IP address


.000103.217.192.117
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
103.217.192.117 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-09-29 02:50:00.989000
Was present on blacklist at: 2025-07-31 02:50, 2025-08-01 02:50, 2025-08-02 02:50, 2025-08-03 02:50, 2025-08-04 02:50, 2025-08-05 02:50, 2025-08-06 02:50, 2025-08-07 02:50, 2025-08-08 02:50, 2025-08-10 02:50, 2025-08-11 02:50, 2025-08-12 02:50, 2025-08-13 02:50, 2025-08-14 02:50, 2025-08-15 02:50, 2025-08-16 02:50, 2025-08-17 02:50, 2025-08-18 02:50, 2025-08-19 02:50, 2025-08-20 02:50, 2025-08-21 02:50, 2025-08-22 02:50, 2025-08-23 02:50, 2025-08-29 02:50, 2025-08-30 02:50, 2025-08-31 02:50, 2025-09-01 02:50, 2025-09-02 02:50, 2025-09-03 02:50, 2025-09-04 02:50, 2025-09-05 02:50, 2025-09-06 02:50, 2025-09-12 02:50, 2025-09-14 02:50, 2025-09-16 02:50, 2025-09-24 02:50, 2025-09-26 02:50, 2025-09-27 02:50, 2025-09-28 02:50, 2025-09-29 02:50
AbuseIPDB
103.217.192.117 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-09-26 04:00:00.741000
Was present on blacklist at: 2025-08-23 04:00, 2025-09-26 04:00
Warden events (16)
2025-09-24
IntrusionUserCompromise+AttemptExploit (node.90bbae): 2
2025-09-18
IntrusionUserCompromise+AttemptExploit (node.2373ce): 2
2025-09-13
IntrusionUserCompromise+AttemptExploit (node.2373ce): 2
2025-09-07
IntrusionUserCompromise+AttemptExploit (node.310b2f): 2
2025-08-25
IntrusionUserCompromise+AttemptExploit (node.d93b03): 2
2025-08-18
IntrusionUserCompromise+AttemptExploit (node.3931a4): 2
2025-08-10
IntrusionUserCompromise+AttemptExploit (node.d93b03): 2
2025-08-08
IntrusionUserCompromise+AttemptExploit (node.90bbae): 2
DShield reports (IP summary, reports)
2025-08-12
Number of reports: 11
Distinct targets: 4
2025-08-31
Number of reports: 11
Distinct targets: 6
2025-09-25
Number of reports: 10
Distinct targets: 7
2025-09-26
Number of reports: 12
Distinct targets: 8
Origin AS
AS146817 - FXNET
BGP Prefix
103.217.192.0/22
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
103.217.192.0 - 103.217.195.255
last_activity
2025-09-24 12:17:12.978000
last_warden_event
2025-09-24 12:17:12.978000
rep
0.0
reserved_range
0
ts_added
2025-07-31 02:54:01.857000
ts_last_update
2025-10-16 02:54:11.239000

Warden event timeline

DShield event timeline

Presence on blacklists