IP address


.021154.219.125.240
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
154.219.125.240 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-02-07 03:50:00.914000
Was present on blacklist at: 2026-01-20 03:50, 2026-01-21 03:50, 2026-01-22 03:50, 2026-01-24 03:50, 2026-01-25 03:50, 2026-01-26 03:50, 2026-01-27 03:50, 2026-01-28 03:50, 2026-01-29 03:50, 2026-01-30 03:50, 2026-02-01 03:50, 2026-02-03 03:50, 2026-02-04 03:50, 2026-02-05 03:50, 2026-02-06 03:50, 2026-02-07 03:50
SpamCop
154.219.125.240 is listed on the SpamCop blacklist.

Description: The SpamCop Blocking List (SCBL) lists IP addresses which have transmitted reported email to SpamCop users.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-02-03 03:53:52.367000
Was present on blacklist at: 2026-01-20 03:53, 2026-01-27 03:53, 2026-02-03 03:53
Warden events (12)
2026-01-31
ReconScanning (node.368407): 2
2026-01-23
ReconScanning (node.368407): 5
2026-01-21
ReconScanning (node.368407): 2
2026-01-20
ReconScanning (node.368407): 3
DShield reports (IP summary, reports)
2026-01-25
Number of reports: 35
Distinct targets: 14
2026-01-26
Number of reports: 35
Distinct targets: 14
Origin AS
AS8796 -
BGP Prefix
154.219.124.0/23
geo
United States, Los Angeles
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
154.192.0.0 - 154.223.255.255
last_activity
2026-01-31 21:57:49
last_warden_event
2026-01-31 21:57:49
rep
0.021428571428571425
reserved_range
0
Shodan's InternetDB
Open ports: 22
Tags:
CPEs: cpe:/a:openbsd:openssh:8.9p1, cpe:/o:canonical:ubuntu_linux
ts_added
2026-01-20 03:53:43.653000
ts_last_update
2026-02-08 03:54:03.392000

Warden event timeline

DShield event timeline

Presence on blacklists