ThreatFox
154.216.20.132 is listed on the ThreatFox blacklist.
Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed:
primary (
feed detail page)
Last checked at:
2024-10-05 10:10:00.167000
Was present on blacklist at:
2024-10-03 14:10,
2024-10-03 18:10,
2024-10-03 22:10,
2024-10-04 02:10,
2024-10-04 06:10,
2024-10-04 10:10,
2024-10-04 14:10,
2024-10-04 18:10,
2024-10-04 22:10,
2024-10-05 02:10,
2024-10-05 06:10,
2024-10-05 10:10
Spamhaus SBL
154.216.20.132 is listed on the Spamhaus SBL blacklist.
Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed:
secondary (DNSBL) (
feed detail page)
Last checked at:
2024-10-03 14:10:00.391000
Was present on blacklist at:
2024-10-03 14:10
Spamhaus DROP
154.216.20.132 is listed on the Spamhaus DROP blacklist.
Description: The Spamhaus DROP (Don't Route Or Peer) lists are advisory"drop all traffic" lists. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed:
secondary (DNSBL) (
feed detail page)
Last checked at:
2024-10-03 14:10:00.391000
Was present on blacklist at:
2024-10-03 14:10
SSL Blacklist
154.216.20.132 is listed on the SSL Blacklist blacklist.
Description: The SSL Blacklist is a project of abuse.ch with the goal of<br>detecting SSL certificates used by botnet C&C servers. NERD uses its list of C&C servers using such certificates.
Type of feed:
primary (
feed detail page)
Last checked at:
2024-10-05 17:30:00.177000
Was present on blacklist at:
2024-10-04 17:30,
2024-10-05 17:30