IP address


.780185.242.226.90security.criminalip.com
Shodan(more info)
Passive DNS
Tags: Research scanner Whitelisted Scanner
IP blacklists
DShield Block
185.242.226.90 was recently listed on the DShield Block blacklist, but currently it is not.

Description: Recommended Block List by DShield.org. It summarizes the top 20 attacking<br>class C (/24) subnets over the last three days.
Type of feed: secondary (feed detail page)

Last checked at: 2025-09-15 04:50:00
Was present on blacklist at: 2025-08-18 04:50, 2025-08-19 04:50, 2025-08-30 04:50, 2025-09-01 04:50, 2025-09-02 04:50, 2025-09-06 04:50, 2025-09-08 04:50, 2025-09-10 04:50, 2025-09-12 04:50, 2025-09-13 04:50
CI Army
185.242.226.90 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-09-14 02:50:00.955000
Was present on blacklist at: 2025-08-27 02:50, 2025-08-28 02:50, 2025-08-29 02:50, 2025-08-30 02:50, 2025-08-31 02:50, 2025-09-01 02:50, 2025-09-02 02:50, 2025-09-03 02:50, 2025-09-04 02:50, 2025-09-05 02:50, 2025-09-06 02:50, 2025-09-07 02:50, 2025-09-08 02:50, 2025-09-09 02:50, 2025-09-10 02:50, 2025-09-11 02:50, 2025-09-12 02:50, 2025-09-13 02:50, 2025-09-14 02:50
AbuseIPDB
185.242.226.90 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-09-14 04:00:00.646000
Was present on blacklist at: 2025-08-27 04:00, 2025-08-28 04:00, 2025-08-29 04:00, 2025-08-30 04:00, 2025-08-31 04:00, 2025-09-01 04:00, 2025-09-02 04:00, 2025-09-03 04:00, 2025-09-04 04:00, 2025-09-05 04:00, 2025-09-06 04:00, 2025-09-07 04:00, 2025-09-08 04:00, 2025-09-10 04:00, 2025-09-11 04:00, 2025-09-14 04:00
UCEPROTECT L1
185.242.226.90 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-09-15 07:45:00.889000
Was present on blacklist at: 2025-08-28 23:45, 2025-08-29 07:45, 2025-08-29 15:45, 2025-08-29 23:45, 2025-08-30 07:45, 2025-08-30 15:45, 2025-08-30 23:45, 2025-08-31 07:45, 2025-08-31 15:45, 2025-08-31 23:45, 2025-09-01 07:45, 2025-09-01 15:45, 2025-09-01 23:45, 2025-09-02 07:45, 2025-09-02 15:45, 2025-09-02 23:45, 2025-09-03 07:45, 2025-09-03 15:45, 2025-09-03 23:45, 2025-09-04 07:45, 2025-09-04 15:45, 2025-09-04 23:45, 2025-09-05 07:45, 2025-09-05 15:45, 2025-09-14 07:45, 2025-09-14 15:45, 2025-09-14 23:45, 2025-09-15 07:45
Turris greylist
185.242.226.90 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-09-05 21:15:00.194000
Was present on blacklist at: 2025-08-29 21:15, 2025-08-31 21:15, 2025-09-01 21:15, 2025-09-02 21:15, 2025-09-03 21:15, 2025-09-05 21:15
Warden events (1978)
2025-09-15
ReconScanning (node.4dc198): 10
ReconScanning (node.368407): 28
ReconScanning (node.9c1411): 2
AnomalyTraffic (node.ffe95c): 2
2025-09-14
ReconScanning (node.4dc198): 22
AnomalyTraffic (node.ffe95c): 6
ReconScanning (node.368407): 19
2025-09-13
AnomalyTraffic (node.ffe95c): 2
ReconScanning (node.9c1411): 1
ReconScanning (node.368407): 1
2025-09-12
AnomalyTraffic (node.ffe95c): 2
ReconScanning (node.9c1411): 1
2025-09-11
AnomalyTraffic (node.ffe95c): 4
2025-09-10
ReconScanning (node.368407): 20
ReconScanning (node.4dc198): 6
AnomalyTraffic (node.ffe95c): 4
ReconScanning (node.9c1411): 2
2025-09-09
ReconScanning (node.368407): 25
ReconScanning (node.4dc198): 10
2025-09-08
ReconScanning (node.4dc198): 5
ReconScanning (node.368407): 5
2025-09-07
ReconScanning (node.368407): 18
ReconScanning (node.4dc198): 19
2025-09-06
ReconScanning (node.4dc198): 15
ReconScanning (node.368407): 34
2025-09-05
ReconScanning (node.368407): 7
ReconScanning (node.4dc198): 5
2025-09-04
ReconScanning (node.368407): 98
ReconScanning (node.4dc198): 57
2025-09-03
ReconScanning (node.368407): 149
ReconScanning (node.4dc198): 113
AnomalyTraffic (node.ffe95c): 1
2025-09-02
ReconScanning (node.368407): 136
ReconScanning (node.4dc198): 113
2025-09-01
ReconScanning (node.368407): 124
ReconScanning (node.4dc198): 95
2025-08-31
ReconScanning (node.4dc198): 96
ReconScanning (node.368407): 119
2025-08-30
ReconScanning (node.368407): 89
ReconScanning (node.4dc198): 72
AnomalyTraffic (node.ffe95c): 2
2025-08-29
ReconScanning (node.4dc198): 50
ReconScanning (node.368407): 53
AnomalyTraffic (node.ffe95c): 15
2025-08-28
ReconScanning (node.4dc198): 35
ReconScanning (node.368407): 45
AnomalyTraffic (node.ffe95c): 13
2025-08-27
ReconScanning (node.368407): 79
AnomalyTraffic (node.ffe95c): 14
ReconScanning (node.4dc198): 72
2025-08-26
ReconScanning (node.368407): 26
AnomalyTraffic (node.ffe95c): 5
ReconScanning (node.4dc198): 24
2025-08-19
ReconScanning (node.4dc198): 1
2025-08-18
ReconScanning (node.4dc198): 3
2025-08-15
ReconScanning (node.9c1411): 4
DShield reports (IP summary, reports)
2025-08-27
Number of reports: 5695
Distinct targets: 4065
2025-08-28
Number of reports: 4675
Distinct targets: 2919
2025-08-29
Number of reports: 4420
Distinct targets: 2705
2025-08-30
Number of reports: 7444
Distinct targets: 4645
2025-08-31
Number of reports: 7853
Distinct targets: 4931
2025-09-01
Number of reports: 8197
Distinct targets: 5114
2025-09-02
Number of reports: 7925
Distinct targets: 4997
2025-09-03
Number of reports: 4483
Distinct targets: 3852
2025-09-05
Number of reports: 289
Distinct targets: 256
2025-09-06
Number of reports: 1508
Distinct targets: 1036
2025-09-07
Number of reports: 1012
Distinct targets: 646
2025-09-08
Number of reports: 281
Distinct targets: 153
2025-09-09
Number of reports: 1130
Distinct targets: 703
2025-09-10
Number of reports: 1455
Distinct targets: 950
2025-09-11
Number of reports: 98
Distinct targets: 72
2025-09-12
Number of reports: 143
Distinct targets: 76
2025-09-13
Number of reports: 368
Distinct targets: 268
2025-09-14
Number of reports: 2623
Distinct targets: 1518
Origin AS
AS202425 - INT-NETWORK
BGP Prefix
185.242.226.0/24
geo
United States
🕑 America/Chicago
hostname
security.criminalip.com
hostname_class
['research_scanner']
Address block ('inetnum' or 'NetRange' in whois database)
185.242.224.0 - 185.242.227.255
last_activity
2025-09-15 11:12:01
last_warden_event
2025-09-15 11:12:01
rep
0.7803013392857143
reserved_range
0
ts_added
2025-08-15 05:57:46.550000
ts_last_update
2025-09-15 11:12:48.392000

Warden event timeline

DShield event timeline

Presence on blacklists