IP address


--107.150.0.77
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus SBL
107.150.0.77 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-06-23 16:37:00.068000
Was present on blacklist at: 2025-04-14 16:36, 2025-04-21 16:37, 2025-04-28 16:37, 2025-05-05 16:37, 2025-05-12 16:37, 2025-05-19 16:37, 2025-05-26 16:37, 2025-06-02 16:37, 2025-06-09 16:37, 2025-06-16 16:37, 2025-06-23 16:37
Spamhaus DROP
107.150.0.77 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-06-23 16:37:00.068000
Was present on blacklist at: 2025-04-14 16:36, 2025-04-21 16:37, 2025-04-28 16:37, 2025-05-05 16:37, 2025-05-12 16:37, 2025-05-19 16:37, 2025-05-26 16:37, 2025-06-02 16:37, 2025-06-09 16:37, 2025-06-16 16:37, 2025-06-23 16:37
Spamhaus XBL CBL
107.150.0.77 was recently listed on the Spamhaus XBL CBL blacklist, but currently it is not.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-06-23 16:37:00.068000
Was present on blacklist at: 2025-04-21 16:37, 2025-04-28 16:37
ThreatFox
107.150.0.77 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2025-06-05 14:10:00.155000
Was present on blacklist at: 2025-05-28 22:10, 2025-05-29 02:10, 2025-05-29 06:10, 2025-05-29 10:10, 2025-05-29 14:10, 2025-05-29 18:10, 2025-05-29 22:10, 2025-05-30 02:10, 2025-05-30 06:10, 2025-05-30 10:10, 2025-05-30 14:10, 2025-05-30 18:10, 2025-06-03 18:10, 2025-06-03 18:10, 2025-06-03 22:10, 2025-06-03 22:10, 2025-06-04 02:10, 2025-06-04 02:10, 2025-06-04 06:10, 2025-06-04 06:10, 2025-06-04 10:10, 2025-06-04 10:10, 2025-06-04 14:10, 2025-06-04 14:10, 2025-06-04 18:10, 2025-06-04 18:10, 2025-06-04 22:10, 2025-06-04 22:10, 2025-06-05 02:10, 2025-06-05 02:10, 2025-06-05 06:10, 2025-06-05 06:10, 2025-06-05 10:10, 2025-06-05 10:10, 2025-06-05 14:10, 2025-06-05 14:10
DShield reports (IP summary, reports)
2025-04-14
Number of reports: 111
Distinct targets: 28
2025-04-15
Number of reports: 209
Distinct targets: 29
2025-04-16
Number of reports: 473
Distinct targets: 29
2025-04-17
Number of reports: 1094
Distinct targets: 83
2025-04-18
Number of reports: 1095
Distinct targets: 86
2025-04-19
Number of reports: 478
Distinct targets: 83
2025-04-20
Number of reports: 1112
Distinct targets: 83
2025-04-21
Number of reports: 1127
Distinct targets: 83
2025-04-22
Number of reports: 569
Distinct targets: 82
2025-04-23
Number of reports: 1104
Distinct targets: 82
2025-04-24
Number of reports: 1122
Distinct targets: 85
2025-04-25
Number of reports: 565
Distinct targets: 87
2025-04-26
Number of reports: 482
Distinct targets: 70
2025-04-27
Number of reports: 877
Distinct targets: 70
2025-04-28
Number of reports: 598
Distinct targets: 67
OTX pulses
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name:david3
Pulse modified:2025-05-28 11:50:09.454000
Indicator created:2025-04-28 12:15:27
Indicator role:scanning_host
Indicator title:404 NOT FOUND
Indicator expiration:2025-07-27 00:00:00
Origin AS
AS214943 - RAILNET
BGP Prefix
107.150.0.0/24
geo
United States, Los Angeles
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
107.150.0.0 - 107.150.31.255
last_activity
2025-05-28 12:00:40.757000
reserved_range
0
Shodan's InternetDB
Open ports: 123, 3128, 8000, 8080, 8800
Tags:
CPEs: cpe:/a:squid-cache:squid:3.1.23
ts_added
2025-04-14 16:36:57.042000
ts_last_update
2025-06-28 16:37:00.263000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses