IP address


.000185.242.226.40security.criminalip.com
Shodan(more info)
Passive DNS
Tags: Research scanner Whitelisted
IP blacklists
DShield Block
185.242.226.40 was recently listed on the DShield Block blacklist, but currently it is not.

Description: Recommended Block List by DShield.org. It summarizes the top 20 attacking<br>class C (/24) subnets over the last three days.
Type of feed: secondary (feed detail page)

Last checked at: 2026-01-09 04:50:00
Was present on blacklist at: 2025-12-25 04:50, 2025-12-26 04:50, 2025-12-29 04:50, 2025-12-30 04:50, 2025-12-31 04:50, 2026-01-02 04:50, 2026-01-04 04:50, 2026-01-06 04:50
DataPlane SMTP greeting
185.242.226.40 is listed on the DataPlane SMTP greeting blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs that are<br>identified as SMTP clients issuing unsolicited HELO or EHLO commands.
Type of feed: primary (feed detail page)

Last checked at: 2026-01-08 07:10:01.129000
Was present on blacklist at: 2026-01-06 11:10, 2026-01-06 15:10, 2026-01-06 19:10, 2026-01-06 23:10, 2026-01-07 03:10, 2026-01-07 07:10, 2026-01-07 11:10, 2026-01-07 15:10, 2026-01-07 19:10, 2026-01-07 23:10, 2026-01-08 03:10, 2026-01-08 07:10
DataPlane SSH conn
185.242.226.40 is listed on the DataPlane SSH conn blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IP addresses that<br>has been seen initiating an unsolicited SSH connection to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2026-01-09 07:10:02.118000
Was present on blacklist at: 2026-01-06 11:10, 2026-01-06 15:10, 2026-01-06 19:10, 2026-01-06 23:10, 2026-01-07 03:10, 2026-01-07 07:10, 2026-01-07 11:10, 2026-01-07 15:10, 2026-01-07 19:10, 2026-01-07 23:10, 2026-01-08 03:10, 2026-01-08 07:10, 2026-01-08 11:10, 2026-01-08 15:10, 2026-01-08 19:10, 2026-01-09 03:10, 2026-01-09 07:10
Warden events (4)
2025-12-24
IntrusionUserCompromise (node.cfb4f7): 4
Origin AS
AS202425 - INT-NETWORK
BGP Prefix
185.242.226.0/24
geo
United States
🕑 America/Chicago
hostname
security.criminalip.com
hostname_class
['research_scanner']
Address block ('inetnum' or 'NetRange' in whois database)
185.242.224.0 - 185.242.227.255
last_activity
2025-12-24 10:14:51
last_warden_event
2025-12-24 10:14:51
rep
0.0
reserved_range
0
ts_added
2025-12-24 10:51:54.318000
ts_last_update
2026-01-09 10:52:00.010000

Warden event timeline

DShield event timeline

Presence on blacklists