IP address


.000167.172.143.252
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
AbuseIPDB
167.172.143.252 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-05-02 04:00:00.708000
Was present on blacklist at: 2025-04-04 04:00, 2025-04-05 04:00, 2025-04-10 04:00, 2025-04-13 04:00, 2025-04-16 04:00, 2025-04-17 04:00, 2025-04-18 04:00, 2025-04-22 04:00, 2025-04-23 04:00, 2025-04-25 04:00, 2025-04-29 04:00, 2025-04-30 04:00, 2025-05-01 04:00, 2025-05-02 04:00
Warden events (63)
2025-04-18
ReconScanning (node.368407): 14
ReconScanning (node.4dc198): 1
2025-04-17
ReconScanning (node.4dc198): 8
ReconScanning (node.368407): 4
ReconScanning (node.9c1411): 1
2025-04-16
ReconScanning (node.368407): 2
2025-04-04
ReconScanning (node.368407): 9
ReconScanning (node.4dc198): 2
ReconScanning (node.9c1411): 1
2025-04-03
ReconScanning (node.4dc198): 8
ReconScanning (node.368407): 12
ReconScanning (node.9c1411): 1
DShield reports (IP summary, reports)
2025-04-03
Number of reports: 307
Distinct targets: 225
2025-04-04
Number of reports: 271
Distinct targets: 225
2025-04-05
Number of reports: 98
Distinct targets: 65
2025-04-06
Number of reports: 101
Distinct targets: 68
2025-04-07
Number of reports: 87
Distinct targets: 61
2025-04-08
Number of reports: 63
Distinct targets: 63
2025-04-09
Number of reports: 98
Distinct targets: 65
2025-04-10
Number of reports: 65
Distinct targets: 59
2025-04-11
Number of reports: 101
Distinct targets: 67
2025-04-12
Number of reports: 94
Distinct targets: 64
2025-04-13
Number of reports: 57
Distinct targets: 55
2025-04-14
Number of reports: 54
Distinct targets: 54
2025-04-15
Number of reports: 58
Distinct targets: 58
2025-04-16
Number of reports: 125
Distinct targets: 92
2025-04-17
Number of reports: 441
Distinct targets: 300
2025-04-18
Number of reports: 268
Distinct targets: 157
2025-04-19
Number of reports: 56
Distinct targets: 56
2025-04-20
Number of reports: 84
Distinct targets: 58
2025-04-21
Number of reports: 85
Distinct targets: 59
2025-04-22
Number of reports: 56
Distinct targets: 56
2025-04-23
Number of reports: 82
Distinct targets: 53
2025-04-24
Number of reports: 86
Distinct targets: 57
2025-04-25
Number of reports: 70
Distinct targets: 55
2025-04-26
Number of reports: 59
Distinct targets: 52
2025-04-27
Number of reports: 83
Distinct targets: 55
2025-04-28
Number of reports: 82
Distinct targets: 57
2025-04-29
Number of reports: 54
Distinct targets: 54
2025-04-30
Number of reports: 73
Distinct targets: 50
2025-05-01
Number of reports: 81
Distinct targets: 59
Origin AS
AS14061 - DIGITALOCEAN-ASN
BGP Prefix
167.172.128.0/20
geo
United States, North Bergen
🕑 America/New_York
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
167.172.0.0 - 167.172.255.255
last_activity
2025-04-18 11:08:09
last_warden_event
2025-04-18 11:08:09
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 443, 8090, 9202
Tags: eol-product, cloud
CPEs: cpe:/a:openbsd:openssh:9.7p1, cpe:/o:canonical:ubuntu_linux, cpe:/a:f5:nginx:1.15.5, cpe:/o:linux:linux_kernel
ts_added
2025-04-03 06:18:15.590000
ts_last_update
2025-05-02 06:18:20.751000

Warden event timeline

DShield event timeline

Presence on blacklists