IP address


.407185.242.226.113security.criminalip.com
Shodan(more info)
Passive DNS
Tags: Research scanner Whitelisted
IP blacklists
DShield Block
185.242.226.113 was recently listed on the DShield Block blacklist, but currently it is not.

Description: Recommended Block List by DShield.org. It summarizes the top 20 attacking<br>class C (/24) subnets over the last three days.
Type of feed: secondary (feed detail page)

Last checked at: 2026-09-09 04:50:00
Was present on blacklist at: 2026-08-05 04:50, 2026-08-06 04:50, 2026-08-08 04:50, 2026-08-09 04:50, 2026-08-13 04:50, 2026-08-14 04:50, 2026-08-15 04:50, 2026-08-20 04:50, 2026-08-21 04:50, 2026-08-23 04:50, 2026-08-25 04:50, 2026-08-26 04:50, 2026-08-28 04:50, 2026-08-29 04:50, 2026-08-31 04:50, 2026-09-01 04:50, 2026-09-03 04:50, 2026-09-08 04:50
Echelon web crawler
185.242.226.113 is listed on the Echelon web crawler blacklist.

Description: HTTP web crawling activity detected on web honeypots
Type of feed: primary (feed detail page)

Last checked at: 2026-09-09 09:50:00.457000
Was present on blacklist at: 2026-08-05 09:50, 2026-08-06 09:50, 2026-08-07 09:50, 2026-08-08 09:50, 2026-08-09 09:50, 2026-08-10 09:50, 2026-08-11 09:50, 2026-08-12 09:50, 2026-08-13 09:50, 2026-08-14 09:50, 2026-08-15 09:50, 2026-08-16 09:50, 2026-08-17 09:50, 2026-08-18 09:50, 2026-08-19 09:50, 2026-08-20 09:50, 2026-08-21 09:50, 2026-08-22 09:50, 2026-08-23 09:50, 2026-08-24 09:50, 2026-08-25 09:50, 2026-08-26 09:50, 2026-08-27 09:50, 2026-08-28 09:50, 2026-08-29 09:50, 2026-08-30 09:50, 2026-08-31 09:50, 2026-09-01 09:50, 2026-09-02 09:50, 2026-09-03 09:50, 2026-09-04 09:50, 2026-09-05 09:50, 2026-09-06 09:50, 2026-09-07 09:50, 2026-09-08 09:50, 2026-09-09 09:50
Echelon enterprise software probe
185.242.226.113 is listed on the Echelon enterprise software probe blacklist.

Description: Probing for enterprise software (Confluence, Jenkins, etc.)
Type of feed: primary (feed detail page)

Last checked at: 2026-08-12 09:15:00.318000
Was present on blacklist at: 2026-08-06 09:15, 2026-08-07 09:15, 2026-08-08 09:15, 2026-08-09 09:15, 2026-08-10 09:15, 2026-08-11 09:15, 2026-08-12 09:15
Echelon TLS/SSL crawler
185.242.226.113 is listed on the Echelon TLS/SSL crawler blacklist.

Description: TLS/SSL connection fingerprinting detected via Suricata
Type of feed: primary (feed detail page)

Last checked at: 2026-09-09 09:40:00.482000
Was present on blacklist at: 2026-08-07 09:40, 2026-08-08 09:40, 2026-08-09 09:40, 2026-08-10 09:40, 2026-08-11 09:40, 2026-08-12 09:40, 2026-08-13 09:40, 2026-08-14 09:40, 2026-08-15 09:40, 2026-08-16 09:40, 2026-08-17 09:40, 2026-08-18 09:40, 2026-08-19 09:40, 2026-08-20 09:40, 2026-08-21 09:40, 2026-08-22 09:40, 2026-08-23 09:40, 2026-08-24 09:40, 2026-08-25 09:40, 2026-08-26 09:40, 2026-08-27 09:40, 2026-08-28 09:40, 2026-08-29 09:40, 2026-08-30 09:40, 2026-08-31 09:40, 2026-09-01 09:40, 2026-09-02 09:40, 2026-09-03 09:40, 2026-09-04 09:40, 2026-09-05 09:40, 2026-09-06 09:40, 2026-09-07 09:40, 2026-09-08 09:40, 2026-09-09 09:40
Echelon CMS enumeration
185.242.226.113 is listed on the Echelon CMS enumeration blacklist.

Description: Content management system discovery and enumeration
Type of feed: primary (feed detail page)

Last checked at: 2026-09-09 09:05:01.053000
Was present on blacklist at: 2026-08-11 09:05, 2026-08-12 09:05, 2026-08-13 09:05, 2026-08-14 09:05, 2026-08-15 09:05, 2026-08-16 09:05, 2026-08-17 09:05, 2026-08-18 09:05, 2026-08-21 09:05, 2026-08-22 09:05, 2026-08-23 09:05, 2026-08-24 09:05, 2026-08-25 09:05, 2026-08-26 09:05, 2026-08-27 09:05, 2026-08-28 09:05, 2026-08-29 09:05, 2026-08-30 09:05, 2026-08-31 09:05, 2026-09-01 09:05, 2026-09-02 09:05, 2026-09-05 09:05, 2026-09-06 09:05, 2026-09-07 09:05, 2026-09-08 09:05, 2026-09-09 09:05

Threat categories

TLRoleCategoryDetails
71 src scan

DShield reports (IP summary, reports)
2026-08-04
Number of reports: 95
Distinct targets: 17
2026-08-05
Number of reports: 211
Distinct targets: 17
2026-08-06
Number of reports: 193
Distinct targets: 17
2026-08-07
Number of reports: 193
Distinct targets: 17
2026-08-08
Number of reports: 173
Distinct targets: 17
2026-08-09
Number of reports: 238
Distinct targets: 17
2026-08-10
Number of reports: 238
Distinct targets: 17
2026-08-11
Number of reports: 182
Distinct targets: 17
2026-08-12
Number of reports: 204
Distinct targets: 14
2026-08-13
Number of reports: 91
Distinct targets: 15
2026-08-14
Number of reports: 204
Distinct targets: 16
2026-08-15
Number of reports: 204
Distinct targets: 16
2026-08-16
Number of reports: 182
Distinct targets: 15
2026-08-17
Number of reports: 128
Distinct targets: 15
2026-08-18
Number of reports: 182
Distinct targets: 15
2026-08-19
Number of reports: 182
Distinct targets: 15
2026-08-22
Number of reports: 122
Distinct targets: 14
2026-08-23
Number of reports: 122
Distinct targets: 14
2026-08-24
Number of reports: 168
Distinct targets: 14
2026-08-25
Number of reports: 168
Distinct targets: 14
2026-08-26
Number of reports: 154
Distinct targets: 15
2026-08-27
Number of reports: 213
Distinct targets: 15
2026-08-28
Number of reports: 147
Distinct targets: 15
2026-08-29
Number of reports: 200
Distinct targets: 14
2026-08-30
Number of reports: 200
Distinct targets: 14
2026-08-31
Number of reports: 158
Distinct targets: 14
2026-09-01
Number of reports: 162
Distinct targets: 13
2026-09-02
Number of reports: 162
Distinct targets: 13
2026-09-03
Number of reports: 204
Distinct targets: 15
2026-09-04
Number of reports: 174
Distinct targets: 14
2026-09-05
Number of reports: 246
Distinct targets: 15
2026-09-06
Number of reports: 215
Distinct targets: 15
2026-09-07
Number of reports: 215
Distinct targets: 15
2026-09-08
Number of reports: 236
Distinct targets: 15
Origin AS
AS202425 - INT-NETWORK
BGP Prefix
185.242.226.0/24
geo
United States
🕑 America/Chicago
hostname
security.criminalip.com
hostname_class
['research_scanner']
Address block ('inetnum' or 'NetRange' in whois database)
185.242.224.0 - 185.242.227.255
rep
0.40707614328471897
reserved_range
0
ts_added
2026-08-05 05:02:20.864000
ts_last_update
2026-09-09 09:50:23.689000

Warden event timeline

DShield event timeline

Presence on blacklists