IP address


.192109.248.6.78
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
Spamhaus PBL
109.248.6.78 is listed on the Spamhaus PBL blacklist.

Description: The Spamhaus PBL is a DNSBL database of end-user IP address ranges which should not be delivering unauthenticated SMTP email to any Internet mail server except those provided for specifically by an ISP for that customer's use.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-09-29 21:02:50.115000
Was present on blacklist at: 2024-07-07 21:02, 2024-07-14 21:02, 2024-07-21 21:02, 2024-07-28 21:02, 2024-08-04 21:02, 2024-08-11 21:02, 2024-08-22 13:36, 2024-08-25 21:02, 2024-09-01 21:02, 2024-09-08 21:02, 2024-09-15 21:02, 2024-09-22 21:02, 2024-09-29 21:02
CI Army
109.248.6.78 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2024-09-30 02:50:00.932000
Was present on blacklist at: 2024-07-02 02:50, 2024-07-03 02:50, 2024-07-04 02:50, 2024-07-05 02:50, 2024-07-06 02:50, 2024-07-07 02:50, 2024-07-08 02:50, 2024-07-09 02:50, 2024-07-10 02:50, 2024-07-11 02:50, 2024-07-12 02:50, 2024-07-13 02:50, 2024-07-16 02:50, 2024-07-17 02:50, 2024-07-18 02:50, 2024-07-19 02:50, 2024-07-20 02:50, 2024-07-22 02:50, 2024-07-23 02:50, 2024-07-24 02:50, 2024-07-25 02:50, 2024-07-26 02:50, 2024-07-27 02:50, 2024-07-29 02:50, 2024-07-30 02:50, 2024-07-31 02:50, 2024-08-01 02:50, 2024-08-02 02:50, 2024-08-05 02:50, 2024-08-06 02:50, 2024-08-07 02:50, 2024-08-08 02:50, 2024-08-09 02:50, 2024-08-10 02:50, 2024-08-12 02:50, 2024-08-13 02:50, 2024-08-14 02:50, 2024-08-15 02:50, 2024-08-20 02:50, 2024-08-21 02:50, 2024-08-22 02:50, 2024-08-23 02:50, 2024-08-24 02:50, 2024-08-25 02:50, 2024-08-26 02:50, 2024-08-27 02:50, 2024-08-28 02:50, 2024-08-29 02:50, 2024-09-02 02:50, 2024-09-03 02:50, 2024-09-04 02:50, 2024-09-05 02:50, 2024-09-06 02:50, 2024-09-07 02:50, 2024-09-08 02:50, 2024-09-09 02:50, 2024-09-10 02:50, 2024-09-11 02:50, 2024-09-12 02:50, 2024-09-13 02:50, 2024-09-14 02:50, 2024-09-15 02:50, 2024-09-16 02:50, 2024-09-17 02:50, 2024-09-18 02:50, 2024-09-19 02:50, 2024-09-20 02:50, 2024-09-23 02:50, 2024-09-24 02:50, 2024-09-25 02:50, 2024-09-26 02:50, 2024-09-27 02:50, 2024-09-28 02:50, 2024-09-29 02:50, 2024-09-30 02:50
AbuseIPDB
109.248.6.78 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2024-09-25 04:00:00.676000
Was present on blacklist at: 2024-07-03 04:00, 2024-07-08 04:00, 2024-07-09 04:00, 2024-07-10 04:00, 2024-07-15 04:00, 2024-07-16 04:00, 2024-07-17 04:00, 2024-07-22 04:00, 2024-07-24 04:00, 2024-07-26 04:00, 2024-07-29 04:00, 2024-07-30 04:00, 2024-07-31 04:00, 2024-08-05 04:00, 2024-08-06 04:00, 2024-08-12 04:00, 2024-08-13 04:00, 2024-08-14 04:00, 2024-08-20 04:00, 2024-08-21 04:00, 2024-08-26 04:00, 2024-08-27 04:00, 2024-08-28 04:00, 2024-09-02 04:00, 2024-09-03 04:00, 2024-09-04 04:00, 2024-09-16 04:00, 2024-09-17 04:00, 2024-09-18 04:00, 2024-09-19 04:00, 2024-09-23 04:00, 2024-09-24 04:00, 2024-09-25 04:00
Turris greylist
109.248.6.78 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2024-09-26 21:15:00.286000
Was present on blacklist at: 2024-07-11 21:15, 2024-07-17 21:15, 2024-07-18 21:15, 2024-07-25 21:15, 2024-08-08 21:15, 2024-08-29 21:15, 2024-09-05 21:15, 2024-09-12 21:15, 2024-09-19 21:15, 2024-09-26 21:15
blocklist.de Apache
109.248.6.78 is listed on the blocklist.de Apache blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing attacks on the service<br>Apache, Apache-DDOS, RFI-Attacks.
Type of feed: primary (feed detail page)

Last checked at: 2024-09-18 10:05:00.552000
Was present on blacklist at: 2024-08-05 10:05, 2024-08-05 16:05, 2024-08-05 22:05, 2024-08-06 04:05, 2024-08-06 10:05, 2024-08-06 16:05, 2024-08-06 22:05, 2024-08-07 04:05, 2024-08-07 10:05, 2024-08-07 16:05, 2024-08-07 22:05, 2024-08-08 04:05, 2024-08-08 10:05, 2024-08-08 16:05, 2024-08-08 22:05, 2024-08-09 04:05, 2024-08-09 10:05, 2024-08-09 16:05, 2024-08-12 04:05, 2024-08-12 10:05, 2024-08-12 16:05, 2024-08-12 22:05, 2024-08-13 04:05, 2024-08-13 10:05, 2024-08-13 16:05, 2024-08-13 22:05, 2024-08-14 04:05, 2024-08-14 10:05, 2024-08-14 16:05, 2024-08-14 22:05, 2024-08-15 04:05, 2024-08-15 10:05, 2024-08-15 16:05, 2024-08-15 22:05, 2024-08-16 04:05, 2024-08-16 10:05, 2024-08-16 16:05, 2024-08-19 16:05, 2024-08-19 22:05, 2024-08-20 04:05, 2024-08-20 10:05, 2024-08-20 16:05, 2024-08-20 22:05, 2024-08-21 04:05, 2024-08-21 10:05, 2024-08-21 16:05, 2024-08-21 22:05, 2024-08-22 04:05, 2024-08-22 10:05, 2024-08-22 16:05, 2024-08-22 22:05, 2024-08-23 04:05, 2024-08-23 10:05, 2024-08-23 16:05, 2024-08-26 04:05, 2024-08-26 10:05, 2024-08-26 16:05, 2024-08-26 22:05, 2024-08-27 04:05, 2024-08-27 10:05, 2024-08-27 16:05, 2024-08-27 22:05, 2024-08-28 04:05, 2024-08-28 10:05, 2024-08-28 16:05, 2024-08-28 22:05, 2024-08-29 04:05, 2024-08-29 10:05, 2024-08-29 16:05, 2024-08-29 22:05, 2024-09-01 22:05, 2024-09-02 04:05, 2024-09-02 10:05, 2024-09-02 16:05, 2024-09-02 22:05, 2024-09-03 04:05, 2024-09-03 10:05, 2024-09-03 16:05, 2024-09-03 22:05, 2024-09-04 04:05, 2024-09-04 10:05, 2024-09-04 16:05, 2024-09-04 22:05, 2024-09-05 04:05, 2024-09-05 10:05, 2024-09-05 16:05, 2024-09-05 22:05, 2024-09-06 04:05, 2024-09-06 10:05, 2024-09-06 16:05, 2024-09-09 04:05, 2024-09-09 10:05, 2024-09-09 16:05, 2024-09-09 22:05, 2024-09-10 04:05, 2024-09-10 10:05, 2024-09-10 22:05, 2024-09-11 04:05, 2024-09-11 10:05, 2024-09-11 16:05, 2024-09-11 22:05, 2024-09-12 04:05, 2024-09-12 10:05, 2024-09-12 16:05, 2024-09-12 22:05, 2024-09-13 04:05, 2024-09-13 10:05, 2024-09-16 04:05, 2024-09-16 10:05, 2024-09-16 16:05, 2024-09-16 22:05, 2024-09-17 04:05, 2024-09-17 10:05, 2024-09-17 16:05, 2024-09-17 22:05, 2024-09-18 04:05, 2024-09-18 10:05
Warden events (886)
2024-09-25
ReconScanning (node.cfb4f7): 67
ReconScanning (node.ce2b59): 5
2024-09-24
ReconScanning (node.5f02e7): 2
ReconScanning (node.cfb4f7): 6
2024-09-23
ReconScanning (node.ce2b59): 1
2024-09-22
ReconScanning (node.ce2b59): 6
2024-09-16
ReconScanning (node.ce2b59): 23
2024-09-15
ReconScanning (node.ce2b59): 4
2024-09-11
ReconScanning (node.ce2b59): 27
2024-09-10
ReconScanning (node.ce2b59): 30
2024-09-09
ReconScanning (node.ce2b59): 31
2024-09-08
ReconScanning (node.ce2b59): 4
2024-09-04
ReconScanning (node.ce2b59): 27
2024-09-03
ReconScanning (node.ce2b59): 30
2024-09-02
ReconScanning (node.ce2b59): 31
2024-09-01
ReconScanning (node.ce2b59): 4
2024-08-28
ReconScanning (node.ce2b59): 26
ReconScanning (node.5f02e7): 3
2024-08-27
ReconScanning (node.ce2b59): 31
ReconScanning (node.5f02e7): 2
2024-08-26
ReconScanning (node.5f02e7): 2
ReconScanning (node.ce2b59): 3
2024-08-20
ReconScanning (node.5f02e7): 1
2024-08-19
ReconScanning (node.5f02e7): 1
2024-08-14
ReconScanning (node.5f02e7): 2
2024-08-13
ReconScanning (node.5f02e7): 1
2024-08-06
ReconScanning (node.5f02e7): 2
2024-08-05
ReconScanning (node.5f02e7): 1
2024-07-31
ReconScanning (node.ce2b59): 28
ReconScanning (node.5f02e7): 1
2024-07-30
ReconScanning (node.ce2b59): 47
ReconScanning (node.5f02e7): 2
2024-07-29
ReconScanning (node.ce2b59): 47
2024-07-28
ReconScanning (node.ce2b59): 6
2024-07-24
ReconScanning (node.ce2b59): 28
ReconScanning (node.5f02e7): 2
2024-07-23
ReconScanning (node.ce2b59): 31
ReconScanning (node.5f02e7): 1
2024-07-22
ReconScanning (node.ce2b59): 32
ReconScanning (node.5f02e7): 1
2024-07-21
ReconScanning (node.ce2b59): 4
2024-07-17
ReconScanning (node.ce2b59): 28
2024-07-16
ReconScanning (node.ce2b59): 30
ReconScanning (node.5f02e7): 1
2024-07-15
ReconScanning (node.ce2b59): 32
ReconScanning (node.5f02e7): 2
2024-07-14
ReconScanning (node.ce2b59): 4
2024-07-10
ReconScanning (node.ce2b59): 27
ReconScanning (node.5f02e7): 1
2024-07-09
ReconScanning (node.ce2b59): 31
ReconScanning (node.5f02e7): 1
2024-07-08
ReconScanning (node.ce2b59): 32
ReconScanning (node.5f02e7): 2
2024-07-07
ReconScanning (node.ce2b59): 4
2024-07-03
ReconScanning (node.5f02e7): 1
ReconScanning (node.ce2b59): 22
2024-07-02
ReconScanning (node.ce2b59): 32
2024-07-01
ReconScanning (node.ce2b59): 32
ReconScanning (node.5f02e7): 1
DShield reports (IP summary, reports)
2024-07-01
Number of reports: 1334
Distinct targets: 1176
2024-07-02
Number of reports: 1360
Distinct targets: 1194
2024-07-03
Number of reports: 1152
Distinct targets: 993
2024-07-07
Number of reports: 67
Distinct targets: 64
2024-07-08
Number of reports: 1743
Distinct targets: 1202
2024-07-09
Number of reports: 1819
Distinct targets: 1234
2024-07-10
Number of reports: 1639
Distinct targets: 1133
2024-07-14
Number of reports: 167
Distinct targets: 138
2024-07-15
Number of reports: 1803
Distinct targets: 1259
2024-07-16
Number of reports: 1892
Distinct targets: 1301
2024-07-17
Number of reports: 1171
Distinct targets: 1020
2024-07-21
Number of reports: 219
Distinct targets: 168
2024-07-22
Number of reports: 1863
Distinct targets: 1308
2024-07-23
Number of reports: 1803
Distinct targets: 1273
2024-07-24
Number of reports: 1536
Distinct targets: 1051
2024-07-28
Number of reports: 214
Distinct targets: 167
2024-07-29
Number of reports: 2046
Distinct targets: 1465
2024-07-30
Number of reports: 2005
Distinct targets: 1431
2024-07-31
Number of reports: 1700
Distinct targets: 1219
2024-08-04
Number of reports: 163
Distinct targets: 151
2024-08-05
Number of reports: 2080
Distinct targets: 1509
2024-08-06
Number of reports: 1448
Distinct targets: 1303
2024-08-11
Number of reports: 84
Distinct targets: 83
2024-08-12
Number of reports: 1113
Distinct targets: 954
2024-08-13
Number of reports: 1903
Distinct targets: 1335
2024-08-14
Number of reports: 1569
Distinct targets: 1053
2024-08-19
Number of reports: 1885
Distinct targets: 1286
2024-08-20
Number of reports: 1961
Distinct targets: 1351
2024-08-21
Number of reports: 1642
Distinct targets: 1100
2024-08-25
Number of reports: 222
Distinct targets: 172
2024-08-26
Number of reports: 1818
Distinct targets: 1227
2024-08-27
Number of reports: 1918
Distinct targets: 1294
2024-08-28
Number of reports: 1673
Distinct targets: 1136
2024-09-01
Number of reports: 159
Distinct targets: 123
2024-09-02
Number of reports: 1973
Distinct targets: 1354
2024-09-03
Number of reports: 1933
Distinct targets: 1346
2024-09-04
Number of reports: 1672
Distinct targets: 1121
2024-09-08
Number of reports: 212
Distinct targets: 155
2024-09-09
Number of reports: 1954
Distinct targets: 1346
2024-09-10
Number of reports: 1896
Distinct targets: 1316
2024-09-11
Number of reports: 1696
Distinct targets: 1156
2024-09-15
Number of reports: 157
Distinct targets: 112
2024-09-16
Number of reports: 1529
Distinct targets: 1091
2024-09-17
Number of reports: 1775
Distinct targets: 1217
2024-09-18
Number of reports: 1952
Distinct targets: 1335
2024-09-19
Number of reports: 316
Distinct targets: 204
2024-09-22
Number of reports: 181
Distinct targets: 139
2024-09-23
Number of reports: 1830
Distinct targets: 1290
2024-09-24
Number of reports: 1866
Distinct targets: 1317
2024-09-25
Number of reports: 1739
Distinct targets: 1212
Origin AS
AS213220 - DATA-CHEAP-AS
BGP Prefix
109.248.6.0/23
geo
Russia, Moscow
🕑 Europe/Moscow
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
109.248.4.0 - 109.248.7.255
last_activity
2024-09-25 22:08:55
last_warden_event
2024-09-25 22:08:55
rep
0.19208519345238095
reserved_range
0
ts_added
2024-06-30 21:02:41.706000
ts_last_update
2024-09-30 02:51:46.439000

Warden event timeline

DShield event timeline

Presence on blacklists