158.173.3.172
Classification: Malicious
158.173.3.172 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-02. Network: AS212238 VPN Consumer Amsterdam, The Netherlands.
Current activity
- Known attacker โ Seen launching attacks over the Internet.
- Known scanner โ Seen scanning hosts over the Internet.
- Open proxy โ Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Proxy | IPWhois.io | 2026-09-02 20:02:43 | 2026-09-02 20:02:43 | anonymization proxy | |
| Malicious Host | CIArmy | 2026-09-02 20:02:42 | 2026-09-02 20:02:42 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-06-06 12:52:55 | 2026-09-02 06:12:09 | anomalous-activity attacker malicious-activity reconnaissance | |
| Bruteforce | AbuseIPDB | 2026-09-01 02:40:14 | 2026-09-02 03:30:14 | attacker malicious-activity | |
| Hacking | AbuseIPDB | 2026-09-01 02:40:14 | 2026-09-01 19:29:57 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-09-01 13:31:36 | 2026-09-01 13:31:36 | attacker malicious-activity |
Whois information
- AS name
- AS212238 VPN Consumer Amsterdam, The Netherlands
- Registrant
- VPN Consumer Amsterdam, The Netherlands
- City
- Amsterdam
- Postal code
- 1012 AB
- Country
- NL โ Netherlands ๐ณ๐ฑ
- First indexed
- 2026-09-02 20:02:42
- Last updated
- 2026-09-02 20:02:42