IP address


--211.72.55.179211-72-55-179.hinet-ip.hinet.net
Shodan(more info)
Passive DNS
Tags: IP in hostname
IP blacklists
Spamhaus SBL CSS
211.72.55.179 is listed on the Spamhaus SBL CSS blacklist.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-12-18 04:37:40.636000
Was present on blacklist at: 2025-11-20 04:37, 2025-11-27 04:37, 2025-12-04 04:37, 2025-12-11 04:37, 2025-12-18 04:37
Spamhaus XBL CBL
211.72.55.179 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-12-18 04:37:40.636000
Was present on blacklist at: 2025-11-20 04:37, 2025-11-27 04:37, 2025-12-04 04:37, 2025-12-11 04:37, 2025-12-18 04:37
UCEPROTECT L1
211.72.55.179 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-11-28 16:45:00.574000
Was present on blacklist at: 2025-11-22 00:45, 2025-11-22 08:45, 2025-11-22 16:45, 2025-11-23 00:45, 2025-11-23 08:45, 2025-11-23 16:45, 2025-11-24 00:45, 2025-11-24 08:45, 2025-11-24 16:45, 2025-11-25 00:45, 2025-11-25 08:45, 2025-11-25 16:45, 2025-11-26 00:45, 2025-11-26 08:45, 2025-11-26 16:45, 2025-11-27 00:45, 2025-11-27 08:45, 2025-11-27 16:45, 2025-11-28 00:45, 2025-11-28 08:45, 2025-11-28 16:45
DataPlane TELNET login
211.72.55.179 is listed on the DataPlane TELNET login blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs trying<br>an unsolicited login via TELNET password authentication.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-14 15:10:02.108000
Was present on blacklist at: 2025-12-07 19:10, 2025-12-07 23:10, 2025-12-08 03:10, 2025-12-08 07:10, 2025-12-08 11:10, 2025-12-08 15:10, 2025-12-08 19:10, 2025-12-08 23:10, 2025-12-09 03:10, 2025-12-09 07:10, 2025-12-09 11:10, 2025-12-09 15:10, 2025-12-09 19:10, 2025-12-09 23:10, 2025-12-10 03:10, 2025-12-10 07:10, 2025-12-10 11:10, 2025-12-10 15:10, 2025-12-10 19:10, 2025-12-10 23:10, 2025-12-11 03:10, 2025-12-11 07:10, 2025-12-11 11:10, 2025-12-11 15:10, 2025-12-11 19:10, 2025-12-11 23:10, 2025-12-12 03:10, 2025-12-12 07:10, 2025-12-12 11:10, 2025-12-12 15:10, 2025-12-12 19:10, 2025-12-12 23:10, 2025-12-13 03:10, 2025-12-13 07:10, 2025-12-13 11:10, 2025-12-13 15:10, 2025-12-13 19:10, 2025-12-13 23:10, 2025-12-14 03:10, 2025-12-14 07:10, 2025-12-14 11:10, 2025-12-14 15:10
OTX pulses
[602bc528f447d628d41494f2] 2021-02-16 13:14:16.945000 | Ka's Honeypot visitors
Author name:Kapppppa
Pulse modified:2025-12-18 23:55:57.683000
Indicator created:2025-11-20 03:50:09
Indicator role:bruteforce
Indicator title:Telnet Login attempt
Indicator expiration:2025-12-20 03:00:00
Origin AS
AS3462 - HINET
BGP Prefix
211.72.0.0/16
geo
Taiwan, Taichung
🕑 Asia/Taipei
hostname
211-72-55-179.hinet-ip.hinet.net
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
211.72.0.0 - 211.75.255.255
last_activity
2025-12-19 00:00:46.951000
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 80, 111, 161, 443
Tags: eol-product
CPEs: cpe:/a:f5:nginx:1.8.0
ts_added
2025-11-20 04:37:34.128000
ts_last_update
2025-12-19 00:00:46.967000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses