IP address


.236185.245.61.186ip.rdns.prepaid-host.com
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
185.245.61.186 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-07-03 02:50:01.132000
Was present on blacklist at: 2025-06-30 02:50, 2025-07-01 02:50, 2025-07-02 02:50, 2025-07-03 02:50
Warden events (46)
2025-07-01
ReconScanning (node.4dc198): 7
ReconScanning (node.9c1411): 4
2025-06-30
ReconScanning (node.9c1411): 19
ReconScanning (node.4dc198): 6
2025-06-29
ReconScanning (node.4dc198): 7
ReconScanning (node.9c1411): 3
DShield reports (IP summary, reports)
2025-06-29
Number of reports: 22
Distinct targets: 14
2025-06-30
Number of reports: 31
Distinct targets: 10
Origin AS
AS44486 - SYNLINQ
BGP Prefix
185.245.61.0/24
geo
Germany
🕑 Europe/Berlin
hostname
ip.rdns.prepaid-host.com
Address block ('inetnum' or 'NetRange' in whois database)
185.245.60.0 - 185.245.63.255
last_activity
2025-07-01 12:36:27
last_warden_event
2025-07-01 12:36:27
rep
0.23560267857142858
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 111, 443, 3306, 8096
Tags: eol-product, database
CPEs: cpe:/a:lodash:lodash, cpe:/o:linux:linux_kernel, cpe:/a:mariadb:mariadb:11.6.2-MariaDB-deb12, cpe:/o:debian:debian_linux, cpe:/a:jellyfin:jellyfin:10.10.3, cpe:/a:f5:nginx:1.22.1, cpe:/a:openbsd:openssh:9.2p1, cpe:/a:jquery:jquery
ts_added
2025-06-29 12:57:45.865000
ts_last_update
2025-07-03 12:57:50.250000

Warden event timeline

DShield event timeline

Presence on blacklists