IP address


.04243.228.157.7
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus SBL
43.228.157.7 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-02-12 09:28:00.747000
Was present on blacklist at: 2026-02-05 09:27, 2026-02-12 09:28
Spamhaus DROP
43.228.157.7 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-02-12 09:28:00.747000
Was present on blacklist at: 2026-02-12 09:28

Threat categories

TLRoleCategoryDetails
No threat category tags assigned

Warden events (5)
2026-02-05
ReconScanning (node.4dc198): 3
ReconScanning (node.368407): 2
Origin AS
AS205759 - GHOSTYNETWORKS
BGP Prefix
43.228.157.0/24
geo
Pakistan
🕑 Asia/Karachi
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
43.228.156.0 - 43.228.159.255
last_activity
2026-02-05 09:50:00
last_warden_event
2026-02-05 09:50:00
rep
0.04151785714285714
reserved_range
0
Shodan's InternetDB
Open ports: 80
Tags: eol-product
CPEs: cpe:/a:php:php:5.6.40, cpe:/a:apache:http_server:2.4.37
ts_added
2026-02-05 09:27:59.478000
ts_last_update
2026-02-13 09:28:00.275000

Warden event timeline

DShield event timeline

Presence on blacklists