IP address


.101195.206.105.227
Shodan(more info)
Passive DNS
Tags:
IP blacklists
ThreatFox
195.206.105.227 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2025-07-03 02:10:00.354000
Was present on blacklist at: 2025-07-02 14:10, 2025-07-02 18:10, 2025-07-02 22:10, 2025-07-03 02:10
Warden events (7)
2025-06-28
ReconScanning (node.9c1411): 2
2025-06-27
ReconScanning (node.9c1411): 2
2025-06-26
ReconScanning (node.9c1411): 3
DShield reports (IP summary, reports)
2025-06-15
Number of reports: 11
Distinct targets: 3
2025-06-16
Number of reports: 32
Distinct targets: 4
2025-06-17
Number of reports: 49
Distinct targets: 4
2025-06-18
Number of reports: 47
Distinct targets: 3
2025-06-20
Number of reports: 28
Distinct targets: 3
2025-06-30
Number of reports: 21
Distinct targets: 9
2025-07-02
Number of reports: 27
Distinct targets: 5
Origin AS
AS9009 - M247
BGP Prefix
195.206.105.0/24
geo
Switzerland, Zurich
🕑 Europe/Zurich
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
195.206.104.0 - 195.206.107.255
last_activity
2025-06-28 01:46:42
last_warden_event
2025-06-28 01:46:42
rep
0.10119047619047619
reserved_range
0
ts_added
2025-06-16 05:09:34.061000
ts_last_update
2025-07-03 05:10:46.825000

Warden event timeline

DShield event timeline

Presence on blacklists