158.173.3.172

Classification: Malicious

158.173.3.172 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-02. Network: AS212238 VPN Consumer Amsterdam, The Netherlands.

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Known scanner โ€” Seen scanning hosts over the Internet.
  • Open proxy โ€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Proxy IPWhois.io 2026-09-02 20:02:43 2026-09-02 20:02:43 anonymization proxy
Malicious Host CIArmy 2026-09-02 20:02:42 2026-09-02 20:02:42 attacker malicious-activity
Port Scanner AbuseIPDB 2026-06-06 12:52:55 2026-09-02 06:12:09 anomalous-activity attacker malicious-activity reconnaissance
Bruteforce AbuseIPDB 2026-09-01 02:40:14 2026-09-02 03:30:14 attacker malicious-activity
Hacking AbuseIPDB 2026-09-01 02:40:14 2026-09-01 19:29:57 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-09-01 13:31:36 2026-09-01 13:31:36 attacker malicious-activity

Whois information

AS name
AS212238 VPN Consumer Amsterdam, The Netherlands
Registrant
VPN Consumer Amsterdam, The Netherlands
City
Amsterdam
Postal code
1012 AB
Country
NL โ€” Netherlands ๐Ÿ‡ณ๐Ÿ‡ฑ
First indexed
2026-09-02 20:02:42
Last updated
2026-09-02 20:02:42