172.172.164.248

Classification: Whitelisted

172.172.164.248 is a whitelisted (trusted) IP address. Reported by 5 threat sources, last seen 2026-09-13. Network: AS8075 Microsoft Limited.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Unauthorized scanning of hosts Blocklist.net.ua 2026-09-10 16:09:33 2026-09-13 17:06:07 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-08-26 09:13:59 2026-09-13 09:13:27 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-08-26 09:13:57 2026-09-13 09:13:25 malicious-activity
Empty reason Blocklist.net.ua 2026-09-11 17:09:07 2026-09-11 17:09:07 attacker malicious-activity
Malicious Host CIArmy 2026-08-25 20:02:24 2026-09-07 20:02:18 attacker malicious-activity
Matched whitelist source: Microsoft_asn Maltiverse 2026-08-25 20:02:29 2026-08-25 20:02:29 benign
Port Scanner AbuseIPDB 2026-08-24 18:29:18 2026-08-25 18:13:13 anomalous-activity attacker malicious-activity reconnaissance
Hacking AbuseIPDB 2026-08-24 18:29:18 2026-08-25 11:59:19 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-08-25 11:56:15 2026-08-25 11:56:15 attacker malicious-activity
Bruteforce AbuseIPDB 2026-08-25 07:21:45 2026-08-25 11:56:15 attacker malicious-activity

Tags

abuse

Whois information

AS name
AS8075 Microsoft Limited
Registrant
Microsoft Limited
City
Washington
State
DC
Postal code
20005
Country
US β€” United States πŸ‡ΊπŸ‡Έ
First indexed
2026-08-25 20:02:24
Last updated
2026-09-13 17:06:07