IP address


.211185.70.184.239
Shodan(more info)
Passive DNS
Tags:
IP blacklists
FireHOL anonymizers
185.70.184.239 is listed on the FireHOL anonymizers blacklist.

Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed: secondary (feed detail page)

Last checked at: 2026-05-12 18:05:12
Was present on blacklist at: 2026-05-01 18:05, 2026-05-02 18:05, 2026-05-03 18:05, 2026-05-04 18:05, 2026-05-05 18:05, 2026-05-06 18:05, 2026-05-07 18:05, 2026-05-08 18:05, 2026-05-09 18:05, 2026-05-10 18:05, 2026-05-11 18:05, 2026-05-12 18:05

Threat categories

TLRoleCategoryDetails
40 src scan port: 80, 443, 9200

Warden events (8)
2026-05-03
ReconScanning (node.ce2b59): 3
2026-05-02
ReconScanning (node.ce2b59): 4
2026-05-01
ReconScanning (node.ce2b59): 1
Origin AS
AS57043 - HOSTKEY-AS
BGP Prefix
185.70.184.0/24
geo
Netherlands, Amsterdam
🕑 Europe/Amsterdam
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
185.70.184.0 - 185.70.187.255
last_activity
2026-05-03 15:02:42
last_warden_event
2026-05-03 15:02:42
rep
0.21096703189959665
reserved_range
0
Shodan's InternetDB
Open ports: 80, 110, 137, 443, 995, 3001, 8080, 8888
Tags: self-signed, eol-product, starttls
CPEs: cpe:/o:linux:linux_kernel, cpe:/a:f5:nginx:1.29.5, cpe:/a:f5:nginx:1.24.0, cpe:/o:canonical:ubuntu_linux, cpe:/a:php:php
ts_added
2026-05-01 20:36:07.948000
ts_last_update
2026-05-12 20:36:10.235000

Warden event timeline

DShield event timeline

Presence on blacklists