IP address


.161194.180.48.139
Shodan(more info)
Passive DNS
Tags:
IP blacklists
UCEPROTECT L1
194.180.48.139 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-09-20 07:45:00.682000
Was present on blacklist at: 2026-07-10 23:45, 2026-07-11 07:45, 2026-07-11 15:45, 2026-07-12 07:45, 2026-07-12 15:45, 2026-07-13 07:45, 2026-07-13 15:45, 2026-07-13 23:45, 2026-07-14 07:45, 2026-07-14 15:45, 2026-07-14 23:45, 2026-07-15 07:45, 2026-07-15 15:45, 2026-07-15 23:45, 2026-07-16 15:45, 2026-07-16 23:45, 2026-07-17 07:45, 2026-07-17 15:45, 2026-07-17 23:45, 2026-07-18 07:45, 2026-07-18 15:45, 2026-07-18 23:45, 2026-07-19 07:45, 2026-07-19 15:45, 2026-07-19 23:45, 2026-07-20 07:45, 2026-07-20 15:45, 2026-07-20 23:45, 2026-07-21 07:45, 2026-07-21 15:45, 2026-07-21 23:45, 2026-07-22 07:45, 2026-07-22 15:45, 2026-07-22 23:45, 2026-07-23 07:45, 2026-07-23 15:45, 2026-07-23 23:45, 2026-07-24 07:45, 2026-07-24 15:45, 2026-07-24 23:45, 2026-07-25 07:45, 2026-07-25 15:45, 2026-07-25 23:45, 2026-07-26 07:45, 2026-07-26 15:45, 2026-07-26 23:45, 2026-07-27 07:45, 2026-07-27 15:45, 2026-07-27 23:45, 2026-07-28 07:45, 2026-07-28 15:45, 2026-07-28 23:45, 2026-07-29 07:45, 2026-07-29 15:45, 2026-07-29 23:45, 2026-07-30 07:45, 2026-07-30 15:45, 2026-07-30 23:45, 2026-07-31 07:45, 2026-07-31 15:45, 2026-07-31 23:45, 2026-08-01 07:45, 2026-08-01 15:45, 2026-08-01 23:45, 2026-08-02 07:45, 2026-08-02 15:45, 2026-08-02 23:45, 2026-08-03 07:45, 2026-08-03 15:45, 2026-08-03 23:45, 2026-08-04 07:45, 2026-08-04 15:45, 2026-08-04 23:45, 2026-08-05 07:45, 2026-08-05 15:45, 2026-08-05 23:45, 2026-08-06 07:45, 2026-08-06 15:45, 2026-08-06 23:45, 2026-08-07 07:45, 2026-08-07 15:45, 2026-08-07 23:45, 2026-08-08 07:45, 2026-08-08 15:45, 2026-08-08 23:45, 2026-08-09 07:45, 2026-08-09 15:45, 2026-08-09 23:45, 2026-08-10 07:45, 2026-08-10 15:45, 2026-08-10 23:45, 2026-08-11 07:45, 2026-08-11 15:45, 2026-08-11 23:45, 2026-08-12 07:45, 2026-08-12 15:45, 2026-08-12 23:45, 2026-08-13 07:45, 2026-08-13 15:45, 2026-08-13 23:45, 2026-08-14 07:45, 2026-08-14 15:45, 2026-08-14 23:45, 2026-08-15 07:45, 2026-08-15 15:45, 2026-08-15 23:45, 2026-08-16 07:45, 2026-08-16 15:45, 2026-08-16 23:45, 2026-08-17 07:45, 2026-08-17 15:45, 2026-08-17 23:45, 2026-08-18 07:45, 2026-08-18 15:45, 2026-08-18 23:45, 2026-08-19 07:45, 2026-08-19 15:45, 2026-08-19 23:45, 2026-08-20 07:45, 2026-08-20 15:45, 2026-08-20 23:45, 2026-08-21 07:45, 2026-08-21 15:45, 2026-08-21 23:45, 2026-08-22 07:45, 2026-08-22 15:45, 2026-08-22 23:45, 2026-08-23 07:45, 2026-08-23 15:45, 2026-08-23 23:45, 2026-08-24 07:45, 2026-08-24 15:45, 2026-08-24 23:45, 2026-08-25 07:45, 2026-08-25 15:45, 2026-08-25 23:45, 2026-08-26 07:45, 2026-08-26 15:45, 2026-08-26 23:45, 2026-08-27 07:45, 2026-08-27 15:45, 2026-08-27 23:45, 2026-08-28 07:45, 2026-08-28 15:45, 2026-08-28 23:45, 2026-08-29 07:45, 2026-08-29 15:45, 2026-08-29 23:45, 2026-08-30 07:45, 2026-08-30 15:45, 2026-08-30 23:45, 2026-08-31 07:45, 2026-08-31 15:45, 2026-08-31 23:45, 2026-09-01 07:45, 2026-09-01 15:45, 2026-09-01 23:45, 2026-09-02 07:45, 2026-09-02 15:45, 2026-09-02 23:45, 2026-09-03 07:45, 2026-09-03 15:45, 2026-09-03 23:45, 2026-09-10 23:45, 2026-09-12 15:45, 2026-09-15 07:45, 2026-09-20 07:45
FireHOL anonymizers
194.180.48.139 is listed on the FireHOL anonymizers blacklist.

Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed: secondary (feed detail page)

Last checked at: 2026-09-22 00:05:15
Was present on blacklist at: 2026-07-11 00:05, 2026-07-12 00:05, 2026-07-13 00:05, 2026-07-14 00:05, 2026-07-15 00:05, 2026-07-16 12:05, 2026-07-17 00:05, 2026-07-18 00:05, 2026-07-19 00:05, 2026-07-20 00:05, 2026-07-21 00:05, 2026-07-22 00:05, 2026-07-23 00:05, 2026-07-24 00:05, 2026-07-25 00:05, 2026-07-26 00:05, 2026-07-27 00:05, 2026-07-28 00:05, 2026-07-29 00:05, 2026-07-30 00:05, 2026-07-31 00:05, 2026-08-01 00:05, 2026-08-02 00:05, 2026-08-03 00:05, 2026-08-04 00:05, 2026-08-05 00:05, 2026-08-06 00:05, 2026-08-07 00:05, 2026-08-08 00:05, 2026-08-09 00:05, 2026-08-10 00:05, 2026-08-11 00:05, 2026-08-12 00:05, 2026-08-13 00:05, 2026-08-14 00:05, 2026-08-15 00:05, 2026-08-16 00:05, 2026-08-17 00:05, 2026-08-18 00:05, 2026-08-19 00:05, 2026-08-20 00:05, 2026-08-21 00:05, 2026-08-22 00:05, 2026-08-23 00:05, 2026-08-24 00:05, 2026-08-25 00:05, 2026-08-26 00:05, 2026-08-27 00:05, 2026-08-28 00:05, 2026-08-29 00:05, 2026-08-30 00:05, 2026-08-31 00:05, 2026-09-01 00:05, 2026-09-02 00:05, 2026-09-03 00:05, 2026-09-04 00:05, 2026-09-05 00:05, 2026-09-06 00:05, 2026-09-07 18:05, 2026-09-08 00:05, 2026-09-09 00:05, 2026-09-10 00:05, 2026-09-11 00:05, 2026-09-12 00:05, 2026-09-13 00:05, 2026-09-14 00:05, 2026-09-15 00:05, 2026-09-16 00:05, 2026-09-17 00:05, 2026-09-18 00:05, 2026-09-19 00:05, 2026-09-20 00:05, 2026-09-21 00:05, 2026-09-22 00:05
AbuseIPDB
194.180.48.139 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-08-29 04:00:00.616000
Was present on blacklist at: 2026-07-21 04:00, 2026-07-24 04:00, 2026-07-25 04:00, 2026-07-26 04:00, 2026-08-03 04:00, 2026-08-06 04:00, 2026-08-15 04:00, 2026-08-17 04:00, 2026-08-18 04:00, 2026-08-29 04:00

Threat categories

TLRoleCategoryDetails
25 src

OTX pulses
[6a917ef9e1429cfcb3b8d264] 2026-08-28 12:28:40.976000 | RDP honeypot logs for 2026/08/28
Author name:jnazario
Pulse modified:2026-08-28 12:28:40.976000
Indicator created:2026-08-28 12:28:41
Indicator role:None
Indicator title:
Indicator expiration:2026-09-27 12:00:00
[6a8edc3f0d7f4e5919c6c312] 2026-08-26 12:29:51.590000 | RDP honeypot logs for 2026/08/26
Author name:jnazario
Pulse modified:2026-08-26 12:29:51.590000
Indicator created:2026-08-26 12:29:52
Indicator role:None
Indicator title:
Indicator expiration:2026-09-25 12:00:00
[6a7f65c621f537f9a3a6adc2] 2026-08-14 19:00:22.058000 | RDP honeypot logs for 2026/08/14
Author name:jnazario
Pulse modified:2026-08-14 19:00:22.058000
Indicator created:2026-08-14 19:00:22
Indicator role:None
Indicator title:
Indicator expiration:2026-09-13 19:00:00
[6a7c65185710baa0646fa57d] 2026-08-12 12:20:40.166000 | RDP honeypot logs for 2026/08/12
Author name:jnazario
Pulse modified:2026-08-12 12:20:40.166000
Indicator created:2026-08-12 12:20:40
Indicator role:None
Indicator title:
Indicator expiration:2026-09-11 12:00:00
[6a79c204b4196038c6f9da6e] 2026-08-10 12:20:20.646000 | RDP honeypot logs for 2026/08/10
Author name:jnazario
Pulse modified:2026-08-10 12:20:20.646000
Indicator created:2026-08-10 12:20:21
Indicator role:None
Indicator title:
Indicator expiration:2026-09-09 12:00:00
[6a732a8df6eafdfd07b7d6a2] 2026-08-05 12:20:29.867000 | RDP honeypot logs for 2026/08/05
Author name:jnazario
Pulse modified:2026-08-05 12:20:29.867000
Indicator created:2026-08-05 12:20:30
Indicator role:None
Indicator title:
Indicator expiration:2026-09-04 12:00:00
[6a6f3647617dd2a29755a04f] 2026-08-02 12:21:27.013000 | RDP honeypot logs for 2026/08/02
Author name:jnazario
Pulse modified:2026-08-02 12:21:27.013000
Indicator created:2026-08-02 12:21:27
Indicator role:None
Indicator title:
Indicator expiration:2026-09-01 12:00:00
Origin AS
AS201814 - PL-SKYTECH-AS
AS15440 - Baltneta
BGP Prefix
194.180.48.0/24
geo
Germany, Berngau
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
194.180.48.0 - 194.180.49.255
last_activity
2026-08-29 18:13:41.930000
rep
0.16144452167705758
reserved_range
0
ts_added
2026-07-10 23:55:12.310000
ts_last_update
2026-09-21 23:55:23.123000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses