IP address


--141.95.153.237
Shodan(more info)
Passive DNS
Tags:
IP blacklists
DataPlane SSH conn
141.95.153.237 is listed on the DataPlane SSH conn blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IP addresses that<br>has been seen initiating an unsolicited SSH connection to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2024-12-19 11:10:01.609000
Was present on blacklist at: 2024-12-12 15:10, 2024-12-12 19:10, 2024-12-12 23:10, 2024-12-13 03:10, 2024-12-13 07:10, 2024-12-13 11:10, 2024-12-13 15:10, 2024-12-13 19:10, 2024-12-13 23:10, 2024-12-14 03:10, 2024-12-14 07:10, 2024-12-14 11:10, 2024-12-14 15:10, 2024-12-14 19:10, 2024-12-14 23:10, 2024-12-15 03:10, 2024-12-15 07:10, 2024-12-15 11:10, 2024-12-15 15:10, 2024-12-15 19:10, 2024-12-15 23:10, 2024-12-16 03:10, 2024-12-16 07:10, 2024-12-16 11:10, 2024-12-16 15:10, 2024-12-16 19:10, 2024-12-16 23:10, 2024-12-17 03:10, 2024-12-17 07:10, 2024-12-17 11:10, 2024-12-17 15:10, 2024-12-17 19:10, 2024-12-17 23:10, 2024-12-18 03:10, 2024-12-18 07:10, 2024-12-18 11:10, 2024-12-18 15:10, 2024-12-18 19:10, 2024-12-18 23:10, 2024-12-19 03:10, 2024-12-19 07:10, 2024-12-19 11:10
blocklist.de SSH
141.95.153.237 is listed on the blocklist.de SSH blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing SSH attacks.
Type of feed: primary (feed detail page)

Last checked at: 2024-12-15 05:05:00.439000
Was present on blacklist at: 2024-12-12 23:05, 2024-12-13 05:05, 2024-12-13 11:05, 2024-12-13 17:05, 2024-12-13 23:05, 2024-12-14 05:05, 2024-12-14 11:05, 2024-12-14 17:05, 2024-12-14 23:05, 2024-12-15 05:05
AbuseIPDB
141.95.153.237 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2024-12-13 05:00:00.683000
Was present on blacklist at: 2024-12-13 05:00
DShield reports (IP summary, reports)
2024-12-11
Number of reports: 187
Distinct targets: 79
Origin AS
AS16276 - OVH
BGP Prefix
141.95.128.0/17
geo
France
🕑 Europe/Paris
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
141.94.0.0 - 141.95.255.255
reserved_range
0
Shodan's InternetDB
Open ports: 22, 23, 25, 26, 80, 81, 82, 84, 88, 110, 123, 143, 443, 465, 993, 1080, 8443
Tags: self-signed, starttls, eol-product
CPEs: cpe:/a:apache:http_server:2.4.52, cpe:/a:openbsd:openssh:9.6, cpe:/a:getbootstrap:bootstrap, cpe:/a:php:php:8.1.27, cpe:/a:f5:nginx, cpe:/a:f5:nginx:1.25.3, cpe:/a:openbsd:openssh:8.9p1, cpe:/a:postfix:postfix, cpe:/a:jquery:jquery, cpe:/a:apache:http_server:2.4.58, cpe:/o:canonical:ubuntu_linux
ts_added
2024-12-12 05:00:18.930000
ts_last_update
2024-12-22 05:00:23.210000

Warden event timeline

DShield event timeline

Presence on blacklists