IP address


.001139.199.156.53
Shodan(more info)
Passive DNS
Tags:
IP blacklists
spamhaus-pbl
139.199.156.53 is listed on the spamhaus-pbl blacklist.

Description:
Type of feed: (feed detail page)

Last checked at: 2026-06-01 16:49:02.763000
Was present on blacklist at: 2026-06-01 16:49

Threat categories

TLRoleCategoryDetails
25 src login protocol: ssh
port: 22

Warden events (1)
2026-06-01
AttemptLogin (node.ce2b59): 1
Origin AS
AS45090 - CNNIC-TENCENT-NET-AP
BGP Prefix
139.199.156.0/23
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
139.196.0.0 - 139.199.255.255
last_activity
2026-06-01 16:29:18
last_warden_event
2026-06-01 16:29:18
rep
0.0007472069585939822
reserved_range
0
Shodan's InternetDB
Open ports: 443, 3000
Tags: cloud, eol-product
CPEs: cpe:/a:f5:nginx:1.24.0, cpe:/o:linux:linux_kernel, cpe:/a:nodejs:node.js, cpe:/a:facebook:react, cpe:/a:expressjs:express, cpe:/o:canonical:ubuntu_linux
ts_added
2026-06-01 16:49:02.727000
ts_last_update
2026-06-11 16:49:10.258000

Warden event timeline

DShield event timeline

Presence on blacklists