IP reputation lookup

Geolocation, network attribution and threat signals for any IPv4 address. Backed by 6 honeypots and a dozen public blocklists.

200 queries / day · free
status ● operational
Result for
176.65.132.156
AS51396 PFCLOUD Pfcloud UG, DE 🇩🇪 Germany
Suspicious
64 / 100
Reputation score

Reputation signals

2 of 6 categories triggered
Web spam
Clean
No match · Comment & forum spam blocklists (StopForumSpam, NOC forum networks).
Web attacks
Clean
No match · IP observed in web exploit attempts and DShield /24 lists.
Botnet C2
Clean
No match · C2 indicators from ccabuse and feodotracker.
Email spam
Detected
IP space hijacked or rented for email spam.
Brute force
Detected
Captured by SSHD honeypot in last 24 h.
DDoS source
Clean
No match · Recent amplification or volumetric activity.

Network usage

probe @ 20 May 2026 16:21 UTC
Routable true
Hosting provider false
Pingable (ICMP) true
Tor exit node false
Web server false
Open proxy / VPN false
Bogon (unroutable)false
Country 🇩🇪 DE

Recommended actions

based on detected signals
BLOCK
Block traffic
Drop traffic from this IP at your firewall / edge.
BLOCK
Block account registrations
Prevent sign-ups from this address.
BLOCK
Block comments & forms
Block forum, comment and contact-form submissions.

Why: Likely malicious traffic from blacklisted IP addresses.

.htaccess nginx iptables
# Outpost · block 176.65.132.156 (suspicious · 64/100) # 2 reputation signals detected Require all granted Require not ip 176.65.132.156 # or block the entire /24: Require not ip 176.65.132.0/24

Raw response

application/json · cached 60s
{ "ip": "176.65.132.156", "reverse": false, "as_number": "51396", "as_name": "PFCLOUD Pfcloud UG, DE", "country_code": "DE", "country": "Germany", "usage": { "is_pingable": true, "is_webserver": false, "is_routable": true, "is_tor": false, "is_proxy": false, "is_hosting": false, "is_bogon": false }, "reputation": { "web_spam": false, "web_attacks": false, "botnet": false, "email_spam": true, "details": "IP being used by web or sshd password guessing / brute force attempts.", "brute_force": true, "ddos": false }, "recommendations": { "block_traffic": true, "block_registrations": true, "block_comments": true, "details": "Likely malicious traffic from blacklisted IP addresses." } }