IP address


.084112.54.138.154
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
Spamhaus XBL CBL
112.54.138.154 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-12-17 03:46:46.809000
Was present on blacklist at: 2024-12-17 03:46
Warden events (12)
2024-12-18
ReconScanning (node.ce2b59): 3
2024-12-17
ReconScanning (node.ce2b59): 9
Origin AS
AS9808 - CMNET-GD
BGP Prefix
112.54.136.0/21
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
112.0.0.0 - 112.63.255.255
last_activity
2024-12-18 05:45:18
last_warden_event
2024-12-18 05:45:18
rep
0.08444010416666667
reserved_range
0
Shodan's InternetDB
Open ports: 80, 161, 180, 443, 1443, 8005, 9001
Tags: eol-product
CPEs: cpe:/a:f5:nginx, cpe:/a:f5:nginx:1.25.0, cpe:/a:apache:tomcat, cpe:/a:f5:nginx:1.20.2
ts_added
2024-12-17 03:46:43.997000
ts_last_update
2024-12-22 03:46:50.566000

Warden event timeline

DShield event timeline

Presence on blacklists