IP address


.000179.43.143.146hostedby.privatelayer.com
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
DataPlane SIP invitation
179.43.143.146 is listed on the DataPlane SIP invitation blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IP addresses that<br>have been seen initiating an unsolicited SIP INVITE operation to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-04 11:10:00.839000
Was present on blacklist at: 2026-02-20 03:10, 2026-02-20 07:10, 2026-02-20 11:10, 2026-02-20 15:10, 2026-02-20 19:10, 2026-02-20 23:10, 2026-02-21 03:10, 2026-02-21 07:10, 2026-02-21 11:10, 2026-02-21 15:10, 2026-02-21 19:10, 2026-02-21 23:10, 2026-02-22 03:10, 2026-02-22 07:10, 2026-02-22 11:10, 2026-02-22 15:10, 2026-02-22 19:10, 2026-02-22 23:10, 2026-02-23 03:10, 2026-02-23 07:10, 2026-02-23 11:10, 2026-02-23 15:10, 2026-02-23 19:10, 2026-02-23 23:10, 2026-02-24 03:10, 2026-02-24 07:10, 2026-02-24 11:10, 2026-02-24 15:10, 2026-02-24 19:10, 2026-02-24 23:10, 2026-02-25 03:10, 2026-02-25 07:10, 2026-02-25 11:10, 2026-02-25 15:10, 2026-02-25 19:10, 2026-02-25 23:10, 2026-02-26 03:10, 2026-02-26 07:10, 2026-02-26 11:10, 2026-02-26 15:10, 2026-02-26 19:10, 2026-02-26 23:10, 2026-02-27 03:10, 2026-02-27 07:10, 2026-02-27 11:10, 2026-02-27 15:10, 2026-02-27 19:10, 2026-02-27 23:10, 2026-02-28 03:10, 2026-02-28 07:10, 2026-02-28 11:10, 2026-02-28 15:10, 2026-02-28 19:10, 2026-02-28 23:10, 2026-03-01 03:10, 2026-03-01 07:10, 2026-03-01 11:10, 2026-03-01 15:10, 2026-03-01 19:10, 2026-03-01 23:10, 2026-03-02 03:10, 2026-03-02 07:10, 2026-03-02 11:10, 2026-03-02 15:10, 2026-03-02 19:10, 2026-03-02 23:10, 2026-03-03 03:10, 2026-03-03 07:10, 2026-03-03 11:10, 2026-03-03 15:10, 2026-03-03 19:10, 2026-03-03 23:10, 2026-03-04 03:10, 2026-03-04 07:10, 2026-03-04 11:10
CI Army
179.43.143.146 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-03-19 03:50:00.830000
Was present on blacklist at: 2026-02-20 03:50, 2026-02-21 03:50, 2026-02-22 03:50, 2026-02-23 03:50, 2026-02-24 03:50, 2026-02-26 03:50, 2026-02-27 03:50, 2026-02-28 03:50, 2026-03-01 03:50, 2026-03-02 03:50, 2026-03-03 03:50, 2026-03-04 03:50, 2026-03-05 03:50, 2026-03-06 03:50, 2026-03-10 03:50, 2026-03-11 03:50, 2026-03-16 03:50, 2026-03-17 03:50, 2026-03-18 03:50, 2026-03-19 03:50
AbuseIPDB
179.43.143.146 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-03-17 05:00:00.613000
Was present on blacklist at: 2026-02-21 05:00, 2026-02-25 05:00, 2026-02-26 05:00, 2026-02-27 05:00, 2026-02-28 05:00, 2026-03-02 05:00, 2026-03-03 05:00, 2026-03-05 05:00, 2026-03-06 05:00, 2026-03-12 05:00, 2026-03-13 05:00, 2026-03-14 05:00, 2026-03-15 05:00, 2026-03-16 05:00, 2026-03-17 05:00
UCEPROTECT L1
179.43.143.146 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-21 16:45:00.721000
Was present on blacklist at: 2026-02-25 00:45, 2026-02-25 08:45, 2026-02-26 00:45, 2026-02-27 08:45, 2026-02-27 16:45, 2026-02-28 08:45, 2026-03-01 16:45, 2026-03-02 08:45, 2026-03-02 16:45, 2026-03-03 00:45, 2026-03-03 08:45, 2026-03-03 16:45, 2026-03-04 00:45, 2026-03-04 08:45, 2026-03-04 16:45, 2026-03-05 00:45, 2026-03-05 08:45, 2026-03-05 16:45, 2026-03-06 00:45, 2026-03-06 08:45, 2026-03-09 08:45, 2026-03-09 16:45, 2026-03-10 00:45, 2026-03-12 08:45, 2026-03-12 16:45, 2026-03-13 00:45, 2026-03-13 08:45, 2026-03-13 16:45, 2026-03-14 00:45, 2026-03-14 08:45, 2026-03-14 16:45, 2026-03-15 00:45, 2026-03-15 08:45, 2026-03-15 16:45, 2026-03-16 00:45, 2026-03-16 08:45, 2026-03-16 16:45, 2026-03-17 00:45, 2026-03-17 08:45, 2026-03-17 16:45, 2026-03-18 00:45, 2026-03-18 08:45, 2026-03-18 16:45, 2026-03-19 00:45, 2026-03-19 08:45, 2026-03-19 16:45, 2026-03-20 00:45, 2026-03-20 08:45, 2026-03-20 16:45, 2026-03-21 00:45, 2026-03-21 08:45, 2026-03-21 16:45
Echelon SIP register scanner
179.43.143.146 is listed on the Echelon SIP register scanner blacklist.

Description: SIP VoIP registration scanning on port 5060
Type of feed: primary (feed detail page)

Last checked at: 2026-03-21 10:30:00.439000
Was present on blacklist at: 2026-03-05 10:30, 2026-03-06 10:30, 2026-03-09 10:30, 2026-03-10 10:30, 2026-03-12 10:30, 2026-03-14 10:30, 2026-03-15 10:30, 2026-03-16 10:30, 2026-03-17 10:30, 2026-03-18 10:30, 2026-03-19 10:30, 2026-03-20 10:30, 2026-03-21 10:30
Echelon port scan
179.43.143.146 is listed on the Echelon port scan blacklist.

Description: Scanning 5+ ports on target host
Type of feed: primary (feed detail page)

Last checked at: 2026-03-21 10:25:00.653000
Was present on blacklist at: 2026-03-14 10:25, 2026-03-15 10:25, 2026-03-16 10:25, 2026-03-17 10:25, 2026-03-18 10:25, 2026-03-19 10:25, 2026-03-20 10:25, 2026-03-21 10:25

Threat categories

TLRoleCategoryDetails
48 src scan
46 src

Warden events (3183)
2026-03-08
ReconScanning (node.368407): 92
ReconScanning (node.4dc198): 28
2026-03-07
ReconScanning (node.4dc198): 230
ReconScanning (node.368407): 287
2026-03-06
ReconScanning (node.4dc198): 216
ReconScanning (node.368407): 287
2026-03-05
ReconScanning (node.368407): 286
ReconScanning (node.4dc198): 253
2026-03-04
ReconScanning (node.368407): 226
ReconScanning (node.4dc198): 215
2026-03-03
ReconScanning (node.4dc198): 105
ReconScanning (node.368407): 104
2026-03-02
ReconScanning (node.4dc198): 288
ReconScanning (node.368407): 286
2026-03-01
ReconScanning (node.4dc198): 55
ReconScanning (node.368407): 55
2026-02-27
ReconScanning (node.368407): 43
ReconScanning (node.4dc198): 43
2026-02-21
ReconScanning (node.368407): 41
ReconScanning (node.4dc198): 43
DShield reports (IP summary, reports)
2026-02-26
Number of reports: 197
Distinct targets: 159
2026-02-27
Number of reports: 226
Distinct targets: 169
2026-02-28
Number of reports: 314
Distinct targets: 232
2026-03-02
Number of reports: 2010
Distinct targets: 1507
2026-03-03
Number of reports: 871
Distinct targets: 607
2026-03-04
Number of reports: 1506
Distinct targets: 1137
2026-03-05
Number of reports: 1506
Distinct targets: 1137
2026-03-15
Number of reports: 630
Distinct targets: 209
2026-03-16
Number of reports: 711
Distinct targets: 221
2026-03-17
Number of reports: 31
Distinct targets: 19
Origin AS
AS51852 - PLI-AS
BGP Prefix
179.43.143.0/24
geo
Switzerland, Rümlang
🕑 Europe/Zurich
hostname
hostedby.privatelayer.com
Address block ('inetnum' or 'NetRange' in whois database)
179.43.128.0 - 179.43.191.255
last_activity
2026-03-08 07:39:06
last_warden_event
2026-03-08 07:39:06
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22
Tags:
CPEs: cpe:/a:openbsd:openssh:9.6p1, cpe:/o:canonical:ubuntu_linux
ts_added
2026-02-20 03:10:05.568000
ts_last_update
2026-03-25 03:10:10.280000

Warden event timeline

DShield event timeline

Presence on blacklists