IP address


--163.172.206.17163-172-206-17.rev.poneytelecom.eu
Shodan(more info)
Passive DNS
Tags: IP in hostname
IP blacklists
DataPlane SIP query
163.172.206.17 is listed on the DataPlane SIP query blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IP addresses that<br>has been seen initiating an unsolicited SIP OPTIONS query to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2025-11-15 15:10:00.844000
Was present on blacklist at: 2025-11-10 03:10, 2025-11-10 07:10, 2025-11-10 11:10, 2025-11-10 15:10, 2025-11-10 19:10, 2025-11-10 23:10, 2025-11-11 03:10, 2025-11-11 07:10, 2025-11-11 11:10, 2025-11-11 15:10, 2025-11-11 19:10, 2025-11-11 23:10, 2025-11-12 03:10, 2025-11-12 07:10, 2025-11-12 11:10, 2025-11-12 15:10, 2025-11-12 19:10, 2025-11-12 23:10, 2025-11-13 03:10, 2025-11-13 07:10, 2025-11-13 11:10, 2025-11-13 15:10, 2025-11-13 19:10, 2025-11-13 23:10, 2025-11-14 03:10, 2025-11-14 07:10, 2025-11-14 11:10, 2025-11-14 15:10, 2025-11-14 19:10, 2025-11-14 23:10, 2025-11-15 03:10, 2025-11-15 07:10, 2025-11-15 11:10, 2025-11-15 15:10
CI Army
163.172.206.17 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-11-15 03:50:00.917000
Was present on blacklist at: 2025-11-10 03:50, 2025-11-11 03:50, 2025-11-12 03:50, 2025-11-13 03:50, 2025-11-14 03:50, 2025-11-15 03:50
AbuseIPDB
163.172.206.17 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-11-15 05:00:00.653000
Was present on blacklist at: 2025-11-11 05:00, 2025-11-12 05:00, 2025-11-13 05:00, 2025-11-14 05:00, 2025-11-15 05:00
DShield reports (IP summary, reports)
2025-11-10
Number of reports: 721
Distinct targets: 237
2025-11-11
Number of reports: 721
Distinct targets: 237
2025-11-12
Number of reports: 670
Distinct targets: 226
2025-11-13
Number of reports: 657
Distinct targets: 201
2025-11-14
Number of reports: 683
Distinct targets: 191
Origin AS
AS12876 - AS12876
BGP Prefix
163.172.0.0/16
geo
France, Paris
🕑 Europe/Paris
hostname
163-172-206-17.rev.poneytelecom.eu
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
163.172.0.0 - 163.172.255.255
reserved_range
0
Shodan's InternetDB
Open ports: 22, 25, 80
Tags:
CPEs: cpe:/a:openbsd:openssh:7.6p1, cpe:/o:canonical:ubuntu_linux, cpe:/a:apache:http_server:2.4.29
ts_added
2025-11-10 03:11:02.175000
ts_last_update
2025-11-15 15:10:58.113000

Warden event timeline

DShield event timeline

Presence on blacklists