IP address


--31.207.45.217
Shodan(more info)
Passive DNS
Tags:
IP blacklists
ThreatFox
31.207.45.217 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2024-12-22 03:10:00.165000
Was present on blacklist at: 2024-12-20 07:10, 2024-12-20 11:10, 2024-12-20 15:10, 2024-12-20 19:10, 2024-12-20 23:10, 2024-12-21 03:10, 2024-12-21 07:10, 2024-12-21 11:10, 2024-12-21 15:10, 2024-12-21 19:10, 2024-12-21 23:10, 2024-12-22 03:10
Origin AS
AS57043 - HOSTKEY-AS
BGP Prefix
31.207.45.0/24
geo
Netherlands, Amsterdam
🕑 Europe/Amsterdam
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
31.207.44.0 - 31.207.47.255
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 25, 53, 80, 81, 443, 465, 587, 2002, 2003, 2222, 3000, 3001, 4000, 5000, 5672, 6080, 8000, 8081, 9443, 10000, 20000, 27017
Tags: starttls, eol-product, database, self-signed
CPEs: cpe:/a:f5:nginx:1.26.0, cpe:/a:postfix:postfix, cpe:/a:openbsd:openssh:8.2p1, cpe:/a:mongodb:mongodb:7.0.11, cpe:/a:vmware:rabbitmq:3.11.22, cpe:/o:canonical:ubuntu_linux, cpe:/a:f5:nginx:1.24.0, cpe:/a:openssl:openssl:3.0.2, cpe:/a:webmin:webmin, cpe:/a:angularjs:angular.js
ts_added
2024-12-20 07:10:05.256000
ts_last_update
2024-12-22 03:10:07.697000

Warden event timeline

DShield event timeline

Presence on blacklists