IP address


.01445.134.225.249
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
45.134.225.249 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2024-04-29 02:50:01.008000
Was present on blacklist at: 2024-02-25 03:50, 2024-02-26 03:50, 2024-02-28 03:50, 2024-02-29 03:50, 2024-03-01 03:50, 2024-03-02 03:50, 2024-03-03 03:50, 2024-03-04 03:50, 2024-03-05 03:50, 2024-03-06 03:50, 2024-03-07 03:50, 2024-03-08 03:50, 2024-03-09 03:50, 2024-03-10 03:50, 2024-03-29 03:50, 2024-03-30 03:50, 2024-03-31 02:50, 2024-04-01 02:50, 2024-04-02 02:50, 2024-04-03 02:50, 2024-04-04 02:50, 2024-04-05 02:50, 2024-04-06 02:50, 2024-04-07 02:50, 2024-04-08 02:50, 2024-04-09 02:50, 2024-04-10 02:50, 2024-04-11 02:50, 2024-04-12 02:50, 2024-04-13 02:50, 2024-04-14 02:50, 2024-04-16 02:50, 2024-04-17 02:50, 2024-04-18 02:50, 2024-04-19 02:50, 2024-04-20 02:50, 2024-04-21 02:50, 2024-04-22 02:50, 2024-04-23 02:50, 2024-04-24 02:50, 2024-04-25 02:50, 2024-04-26 02:50, 2024-04-28 02:50, 2024-04-29 02:50
Spamhaus PBL
45.134.225.249 is listed on the Spamhaus PBL blacklist.

Description: The Spamhaus PBL is a DNSBL database of end-user IP address ranges which should not be delivering unauthenticated SMTP email to any Internet mail server except those provided for specifically by an ISP for that customer's use.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-05-18 03:51:30.597000
Was present on blacklist at: 2024-02-24 03:51, 2024-03-02 03:51, 2024-03-09 03:51, 2024-03-16 03:51, 2024-03-23 03:51, 2024-03-30 03:51, 2024-04-06 03:51, 2024-04-13 03:51, 2024-04-20 03:51, 2024-04-27 03:51, 2024-05-04 03:51, 2024-05-11 03:51, 2024-05-18 03:51
DShield Block
45.134.225.249 was recently listed on the DShield Block blacklist, but currently it is not.

Description: Recommended Block List by DShield.org. It summarizes the top 20 attacking<br>class C (/24) subnets over the last three days.
Type of feed: secondary (feed detail page)

Last checked at: 2024-05-18 04:50:00
Was present on blacklist at: 2024-02-21 04:50, 2024-02-22 04:50
Turris greylist
45.134.225.249 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2024-04-15 21:15:00.175000
Was present on blacklist at: 2024-03-03 22:15, 2024-04-15 21:15
AbuseIPDB
45.134.225.249 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>IPs performing malicious activity(DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2024-04-20 04:00:00.548000
Was present on blacklist at: 2024-04-19 04:00, 2024-04-20 04:00
Warden events (288)
2024-05-08
ReconScanning (node.8cbf96): 2
2024-04-18
ReconScanning (node.bd32ad): 130
ReconScanning (node.7d83c0): 2
AnomalyTraffic (node.c35ced): 14
ReconScanning (node.8cbf96): 130
2024-03-04
ReconScanning (node.bd32ad): 10
DShield reports (IP summary, reports)
2024-02-24
Number of reports: 24
Distinct targets: 23
2024-02-26
Number of reports: 14
Distinct targets: 13
2024-02-27
Number of reports: 5635
Distinct targets: 4956
2024-02-28
Number of reports: 2374
Distinct targets: 1613
2024-02-29
Number of reports: 2005
Distinct targets: 1727
2024-03-01
Number of reports: 9728
Distinct targets: 7497
2024-03-02
Number of reports: 9495
Distinct targets: 6492
2024-03-03
Number of reports: 9322
Distinct targets: 8418
2024-03-04
Number of reports: 9066
Distinct targets: 8245
2024-03-05
Number of reports: 9558
Distinct targets: 8709
2024-03-06
Number of reports: 10721
Distinct targets: 8773
2024-03-07
Number of reports: 7997
Distinct targets: 7570
2024-03-08
Number of reports: 5373
Distinct targets: 4703
2024-03-09
Number of reports: 7702
Distinct targets: 7118
2024-03-10
Number of reports: 5862
Distinct targets: 5244
2024-03-11
Number of reports: 13
Distinct targets: 12
2024-03-16
Number of reports: 25
Distinct targets: 22
2024-03-29
Number of reports: 186
Distinct targets: 132
2024-03-31
Number of reports: 168
Distinct targets: 151
2024-04-05
Number of reports: 24
Distinct targets: 24
2024-04-08
Number of reports: 69
Distinct targets: 69
2024-04-09
Number of reports: 10725
Distinct targets: 7068
2024-04-10
Number of reports: 21954
Distinct targets: 14051
2024-04-11
Number of reports: 22794
Distinct targets: 14681
2024-04-12
Number of reports: 15507
Distinct targets: 9392
2024-04-14
Number of reports: 63
Distinct targets: 63
2024-04-15
Number of reports: 394
Distinct targets: 393
2024-04-16
Number of reports: 5489
Distinct targets: 2969
2024-04-17
Number of reports: 189
Distinct targets: 106
2024-04-18
Number of reports: 1467
Distinct targets: 1096
2024-04-19
Number of reports: 21
Distinct targets: 21
2024-04-27
Number of reports: 872
Distinct targets: 716
2024-05-08
Number of reports: 28
Distinct targets: 23
Origin AS
AS208046 - HostSlick-Germany
BGP Prefix
45.134.225.0/24
geo
Germany
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
45.134.224.0 - 45.134.227.255
last_activity
2024-05-08 09:23:32
last_warden_event
2024-05-08 09:23:32
rep
0.014285714285714285
reserved_range
0
Shodan's InternetDB
Open ports: 22
Tags: scanner
CPEs: cpe:/a:openbsd:openssh
ts_added
2024-02-10 03:51:26.161000
ts_last_update
2024-05-18 03:51:31.511000

Warden event timeline

DShield event timeline

Presence on blacklists