172.70.246.239
Whitelisted netblocks are typically owned by trusted entities, such as Google or Microsoft who may use them for search engine spiders. However, these same entities sometimes also provide cloud servers and mail services which are easily abused. Pay special attention when trusting or distrusting these IPs.
172.70.246.239 is an IP address from within our whitelist belonging to the subnet 172.64.0.0/13, which we identify as "Cloudflare Reverse Proxy".
| ISP | Cloudflare, Inc. |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS13335 |
| Domain Name | cloudflare.com |
| Country | ๐ฉ๐ช Germany |
| City | Frankfurt am Main, Hesse |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 172.70.246.239
This IP address has been reported a total of 137 times from 44 distinct sources. 172.70.246.239 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Belgium with 4 reports; Switzerland with 1 report; France with 1 report. The most common categories in these recent reports were: Web App Attack 6 times; Port Scan 1 time.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐จ๐ญ copestack |
Honeypot hit on ov-4e5936 (fail2ban jail: nginx-compat)
|
Web App Attack | ||
| ๐ง๐ช madeit |
|
Web App Attack | ||
| ๐ง๐ช madeit |
|
Web App Attack | ||
| ๐ซ๐ท Pays d'Angoulรชme |
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/core/install.php
|
Web App Attack | ||
| ๐บ๐ธ MPL |
tcp/443 (7 or more attempts)
|
Port Scan | ||
| ๐ง๐ช madeit |
|
Web App Attack | ||
| ๐ง๐ช madeit |
|
Web App Attack | ||
| ๐ฆ๐ฑ router.al |
07/02/2026-20:52:52.434482 172.70.246.239 Protocol: 6 ET SCAN LeakIX Inbound User-Agent
|
Hacking | ||
| ๐ฆ๐ฑ router.al |
06/22/2026-19:45:54.717989 172.70.246.239 Protocol: 6 GPL WEB_SERVER 403 Forbidden
|
Port Scan | ||
| ๐บ๐ธ mnsf |
Abuse Detected (1)
|
Brute-Force Web App Attack | ||
| ๐ฉ๐ช FeG Deutschland |
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
|
Exploited Host Web App Attack | ||
| ๐ฆ๐บ trentwiles.com |
Unauthorized connection attempt detected from IP address 172.70.246.239 to port 2096 [SYD]
|
Port Scan | ||
| ๐ฉ๐ช abdubhai |
172.70.246.239 - - [08/Apr/2026:
...
|
Brute-Force | ||
| Anonymous |
Unauthorized access attempt.
|
Brute-Force Web App Attack | ||
| ๐บ๐ธ TPI-Abuse |
|
Brute-Force Bad Web Bot Web App Attack |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ