IP address


--104.245.240.18
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus SBL
104.245.240.18 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-03-12 20:34:50.773000
Was present on blacklist at: 2025-03-05 20:34, 2025-03-12 20:34
Spamhaus DROP
104.245.240.18 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-03-12 20:34:50.773000
Was present on blacklist at: 2025-03-05 20:34, 2025-03-12 20:34
OTX pulses
[67c7822a5bc131fd711769cd] 2025-03-04 22:43:54.013000 | Exposing the Deception: Russian EFF Impersonators Behind Stealc & Pyramid C2
Author name:AlienVault
Pulse modified:2025-03-05 16:16:38.082000
Indicator created:2025-03-04 22:43:54
Indicator role:None
Indicator title:
Indicator expiration:2025-04-03 22:00:00
Origin AS
AS9009 - M247
BGP Prefix
104.245.240.0/22
geo
United States
🕑 America/Chicago
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
104.245.240.0 - 104.245.243.255
last_activity
2025-03-05 20:34:40.518000
reserved_range
0
Shodan's InternetDB
Open ports: 25, 80, 1234, 8181
Tags: self-signed
CPEs:
ts_added
2025-03-05 20:34:42.160000
ts_last_update
2025-03-13 20:34:51.151000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses