IP address


.210103.144.208.1
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
FireHOL anonymizers
103.144.208.1 is listed on the FireHOL anonymizers blacklist.

Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed: secondary (feed detail page)

Last checked at: 2026-05-17 06:05:13
Was present on blacklist at: 2026-02-28 00:05, 2026-03-01 00:05, 2026-03-02 00:05, 2026-03-03 00:05, 2026-03-04 00:05, 2026-03-05 00:05, 2026-03-06 00:05, 2026-03-09 18:05, 2026-03-10 00:05, 2026-03-11 00:05, 2026-03-12 00:05, 2026-03-13 00:05, 2026-03-14 00:05, 2026-03-15 00:05, 2026-03-16 00:05, 2026-03-17 00:05, 2026-03-18 00:05, 2026-03-19 00:05, 2026-03-20 00:05, 2026-03-21 00:05, 2026-03-22 00:05, 2026-03-23 00:05, 2026-03-24 00:05, 2026-03-25 00:05, 2026-03-26 00:05, 2026-03-27 00:05, 2026-03-28 00:05, 2026-03-29 06:05, 2026-03-30 06:05, 2026-03-31 06:05, 2026-04-01 06:05, 2026-04-02 06:05, 2026-04-03 06:05, 2026-04-04 06:05, 2026-04-05 06:05, 2026-04-06 06:05, 2026-04-07 06:05, 2026-04-08 06:05, 2026-04-09 06:05, 2026-04-10 06:05, 2026-04-11 06:05, 2026-05-03 06:05, 2026-05-04 06:05, 2026-05-05 06:05, 2026-05-06 06:05, 2026-05-07 06:05, 2026-05-08 06:05, 2026-05-09 06:05, 2026-05-10 06:05, 2026-05-11 06:05, 2026-05-12 06:05, 2026-05-13 06:05, 2026-05-14 06:05, 2026-05-15 06:05, 2026-05-16 06:05, 2026-05-17 06:05
Spamhaus SBL CSS
103.144.208.1 was recently listed on the Spamhaus SBL CSS blacklist, but currently it is not.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-05-16 05:02:20.780000
Was present on blacklist at: 2026-05-09 05:03

Threat categories

TLRoleCategoryDetails
37 src scan

Warden events (26)
2026-05-16
ReconScanning (node.368407): 2
2026-04-30
ReconScanning (node.4dc198): 4
2026-04-28
ReconScanning (node.368407): 2
2026-04-22
ReconScanning (node.4dc198): 4
2026-04-14
ReconScanning (node.4dc198): 4
2026-04-07
ReconScanning (node.ce2b59): 4
2026-04-02
ReconScanning (node.368407): 2
2026-03-26
ReconScanning (node.368407): 2
2026-03-17
IntrusionUserCompromise+AttemptExploit (node.90bbae): 1
2026-03-06
IntrusionUserCompromise+AttemptExploit (node.709b07): 1
DShield reports (IP summary, reports)
2026-02-27
Number of reports: 10
Distinct targets: 10
Origin AS
AS9341 - ICONPLN-ID-AP
BGP Prefix
103.144.208.0/24
geo
Indonesia
🕑 Asia/Jakarta
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
103.144.208.0 - 103.144.209.255
last_activity
2026-05-16 04:16:15
last_warden_event
2026-05-16 04:16:15
rep
0.21002527971889473
reserved_range
0
Shodan's InternetDB
Open ports: 53, 1701, 2000, 8291
Tags:
CPEs: cpe:/o:mikrotik:routeros:6.48.6
ts_added
2026-02-28 05:01:56.550000
ts_last_update
2026-05-17 05:02:00.378000

Warden event timeline

DShield event timeline

Presence on blacklists