IP address


.001156.229.27.24
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Echelon TLS/SSL crawler
156.229.27.24 is listed on the Echelon TLS/SSL crawler blacklist.

Description: TLS/SSL connection fingerprinting detected via Suricata
Type of feed: primary (feed detail page)

Last checked at: 2026-08-03 09:40:00.361000
Was present on blacklist at: 2026-07-28 09:40, 2026-07-29 09:40, 2026-07-30 09:40, 2026-07-31 09:40, 2026-08-01 09:40, 2026-08-02 09:40, 2026-08-03 09:40
Echelon web crawler
156.229.27.24 is listed on the Echelon web crawler blacklist.

Description: HTTP web crawling activity detected on web honeypots
Type of feed: primary (feed detail page)

Last checked at: 2026-08-03 09:50:00.399000
Was present on blacklist at: 2026-07-28 09:50, 2026-07-29 09:50, 2026-07-30 09:50, 2026-07-31 09:50, 2026-08-01 09:50, 2026-08-02 09:50, 2026-08-03 09:50
Spamhaus XBL CBL
156.229.27.24 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-08-01 05:03:01.565000
Was present on blacklist at: 2026-08-01 05:03
CI Army
156.229.27.24 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-08-04 02:50:00.820000
Was present on blacklist at: 2026-08-02 02:50, 2026-08-03 02:50, 2026-08-04 02:50

Threat categories

TLRoleCategoryDetails
52 src scan
25 src

DShield reports (IP summary, reports)
2026-07-24
Number of reports: 33
Distinct targets: 21
2026-08-02
Number of reports: 98
Distinct targets: 69
2026-08-03
Number of reports: 41
Distinct targets: 28
Origin AS
AS200758 - ORG-DL626-RIPE
BGP Prefix
156.229.27.0/24
geo
United States, Los Angeles
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
156.224.0.0 - 156.255.255.255
rep
0.0007422126711622568
reserved_range
0
ts_added
2026-07-25 05:01:23.911000
ts_last_update
2026-08-06 05:03:20.364000

Warden event timeline

DShield event timeline

Presence on blacklists