IP address


.294104.251.181.63
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
Spamhaus SBL
104.251.181.63 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-06-22 07:48:10.673000
Was present on blacklist at: 2026-05-04 07:48, 2026-05-11 07:48, 2026-05-18 07:48, 2026-05-25 07:48, 2026-06-01 07:48, 2026-06-08 07:48, 2026-06-15 09:08, 2026-06-22 07:48
Spamhaus DROP
104.251.181.63 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-06-22 07:48:10.673000
Was present on blacklist at: 2026-05-04 07:48, 2026-05-11 07:48, 2026-05-18 07:48, 2026-05-25 07:48, 2026-06-01 07:48, 2026-06-08 07:48, 2026-06-15 09:08, 2026-06-22 07:48

Threat categories

TLRoleCategoryDetails
50 src scan
25 src

Warden events (16)
2026-06-20
AnomalyTraffic (node.ce2b59): 1
2026-06-06
AnomalyTraffic (node.ce2b59): 1
2026-06-01
AnomalyTraffic (node.ce2b59): 1
2026-05-28
AnomalyTraffic (node.ce2b59): 1
2026-05-27
AnomalyTraffic (node.ce2b59): 2
ReconScanning (node.ce2b59): 2
2026-05-23
ReconScanning (node.9c1411): 1
2026-05-21
ReconScanning (node.9c1411): 1
2026-05-15
AnomalyTraffic (node.ce2b59): 1
ReconScanning (node.ce2b59): 1
2026-05-13
AnomalyTraffic (node.ce2b59): 1
ReconScanning (node.ce2b59): 1
2026-05-12
AnomalyTraffic (node.ce2b59): 1
ReconScanning (node.ce2b59): 1
DShield reports (IP summary, reports)
2026-04-26
Number of reports: 23
Distinct targets: 17
2026-04-27
Number of reports: 23
Distinct targets: 17
2026-05-09
Number of reports: 16
Distinct targets: 13
2026-05-10
Number of reports: 18
Distinct targets: 15
2026-05-12
Number of reports: 15
Distinct targets: 9
2026-05-14
Number of reports: 22
Distinct targets: 17
2026-05-16
Number of reports: 17
Distinct targets: 11
2026-05-17
Number of reports: 17
Distinct targets: 11
2026-05-18
Number of reports: 15
Distinct targets: 9
2026-05-19
Number of reports: 15
Distinct targets: 9
2026-05-23
Number of reports: 14
Distinct targets: 12
2026-05-24
Number of reports: 14
Distinct targets: 12
2026-05-30
Number of reports: 17
Distinct targets: 11
2026-05-31
Number of reports: 17
Distinct targets: 17
2026-06-02
Number of reports: 20
Distinct targets: 15
2026-06-03
Number of reports: 20
Distinct targets: 15
2026-06-04
Number of reports: 18
Distinct targets: 11
2026-06-05
Number of reports: 19
Distinct targets: 12
2026-06-06
Number of reports: 16
Distinct targets: 11
2026-06-07
Number of reports: 16
Distinct targets: 11
2026-06-08
Number of reports: 18
Distinct targets: 13
2026-06-17
Number of reports: 23
Distinct targets: 21
2026-06-20
Number of reports: 12
Distinct targets: 10
2026-06-21
Number of reports: 14
Distinct targets: 13
2026-06-22
Number of reports: 11
Distinct targets: 9
Origin AS
AS402253 - SKN-NETWORK-1
BGP Prefix
104.251.180.0/22
geo
Switzerland, Zurich
🕑 Europe/Zurich
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
104.251.180.0 - 104.251.183.255
last_activity
2026-06-20 00:20:51
last_warden_event
2026-06-20 00:20:51
rep
0.29441225057466414
reserved_range
0
ts_added
2026-04-27 07:48:01.958000
ts_last_update
2026-06-23 07:48:10.212000

Warden event timeline

DShield event timeline

Presence on blacklists