IP address
Shodan(more info)

Passive DNS

Tags:
- IP blacklists
- blocklist.de IMAP45.138.16.177 is listed on the blocklist.de IMAP blacklist.Spamhaus SBL
Description: Blocklist.de feed is a free and voluntary service<br>provided by a Fraud/Abuse-specialist. IPs performing attacks<br>on the Service imap, sasl, pop3.
Type of feed: primary (feed detail page)
Last checked at: 2026-05-05 16:05:00.206000
Was present on blacklist at: 2026-04-22 22:05, 2026-04-23 04:05, 2026-04-23 10:05, 2026-04-23 16:05, 2026-04-23 22:05, 2026-04-24 04:05, 2026-04-24 16:05, 2026-04-24 22:05, 2026-04-27 10:05, 2026-04-27 16:05, 2026-04-27 22:05, 2026-04-28 04:05, 2026-04-28 10:05, 2026-04-28 16:05, 2026-04-28 22:05, 2026-04-29 04:05, 2026-04-29 10:05, 2026-05-02 10:05, 2026-05-02 16:05, 2026-05-02 22:05, 2026-05-05 16:0545.138.16.177 is listed on the Spamhaus SBL blacklist.Spamhaus SBL CSS
Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)
Last checked at: 2026-04-29 22:08:50.746000
Was present on blacklist at: 2026-04-22 22:08, 2026-04-29 22:0845.138.16.177 is listed on the Spamhaus SBL CSS blacklist.Spamhaus XBL CBL
Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)
Last checked at: 2026-04-29 22:08:50.746000
Was present on blacklist at: 2026-04-22 22:08, 2026-04-29 22:0845.138.16.177 is listed on the Spamhaus XBL CBL blacklist.Spamhaus DROP
Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)
Last checked at: 2026-04-29 22:08:50.746000
Was present on blacklist at: 2026-04-22 22:08, 2026-04-29 22:0845.138.16.177 is listed on the Spamhaus DROP blacklist.blocklist.de mail
Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)
Last checked at: 2026-04-29 22:08:50.746000
Was present on blacklist at: 2026-04-22 22:08, 2026-04-29 22:0845.138.16.177 is listed on the blocklist.de mail blacklist.UCEPROTECT L1
Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing Mail attacks.
Type of feed: primary (feed detail page)
Last checked at: 2026-05-05 16:05:00.352000
Was present on blacklist at: 2026-04-22 22:05, 2026-04-23 04:05, 2026-04-23 10:05, 2026-04-23 16:05, 2026-04-23 22:05, 2026-04-24 04:05, 2026-04-24 16:05, 2026-04-24 22:05, 2026-04-27 10:05, 2026-04-27 16:05, 2026-04-27 22:05, 2026-04-28 04:05, 2026-04-28 10:05, 2026-04-28 16:05, 2026-04-28 22:05, 2026-04-29 04:05, 2026-04-29 10:05, 2026-05-02 10:05, 2026-05-02 16:05, 2026-05-02 22:05, 2026-05-05 16:0545.138.16.177 is listed on the UCEPROTECT L1 blacklist.AbuseIPDB
Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)
Last checked at: 2026-05-06 07:45:00.535000
Was present on blacklist at: 2026-04-23 07:45, 2026-04-23 15:45, 2026-04-23 23:45, 2026-04-24 07:45, 2026-04-24 15:45, 2026-04-24 23:45, 2026-04-25 23:45, 2026-04-26 07:45, 2026-04-27 07:45, 2026-04-27 15:45, 2026-04-27 23:45, 2026-04-28 07:45, 2026-04-28 15:45, 2026-04-28 23:45, 2026-04-29 07:45, 2026-04-29 15:45, 2026-04-29 23:45, 2026-04-30 07:45, 2026-04-30 15:45, 2026-04-30 23:45, 2026-05-01 07:45, 2026-05-01 15:45, 2026-05-01 23:45, 2026-05-02 07:45, 2026-05-02 15:45, 2026-05-02 23:45, 2026-05-03 07:45, 2026-05-03 15:45, 2026-05-03 23:45, 2026-05-04 07:45, 2026-05-04 15:45, 2026-05-04 23:45, 2026-05-05 07:45, 2026-05-05 15:45, 2026-05-05 23:45, 2026-05-06 07:4545.138.16.177 is listed on the AbuseIPDB blacklist.blocklist.de web-login
Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)
Last checked at: 2026-05-02 04:00:00.586000
Was present on blacklist at: 2026-05-02 04:0045.138.16.177 is listed on the blocklist.de web-login blacklist.blocklist.de Apache
Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs that attacks Joomla, Wordpress and<br>other Web-Logins with Brute-Force Logins.
Type of feed: primary (feed detail page)
Last checked at: 2026-05-06 04:05:00.156000
Was present on blacklist at: 2026-05-03 04:05, 2026-05-03 10:05, 2026-05-03 16:05, 2026-05-03 22:05, 2026-05-04 04:05, 2026-05-04 10:05, 2026-05-04 16:05, 2026-05-04 22:05, 2026-05-06 04:0545.138.16.177 is listed on the blocklist.de Apache blacklist.
Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing attacks on the service<br>Apache, Apache-DDOS, RFI-Attacks.
Type of feed: primary (feed detail page)
Last checked at: 2026-05-06 04:05:05.128000
Was present on blacklist at: 2026-05-03 04:05, 2026-05-03 10:05, 2026-05-03 16:05, 2026-05-03 22:05, 2026-05-04 04:05, 2026-05-04 10:05, 2026-05-04 16:05, 2026-05-04 22:05, 2026-05-06 04:05 - Warden events (476)
- 2026-04-24
-
- AttemptLogin (node.ce2b59): 1
- 2026-04-23
-
- IntrusionUserCompromise (node.cfb4f7): 475
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 45 | src | — | |
| 38 | src | login | protocol: smtp port: 25, 465, 587 |
- Origin AS
- AS201814 - PL-SKYTECH-AS
- AS210558 - services-1337-gmbh
- BGP Prefix
- 45.138.16.0/24
- geo
- Poland, Warsaw
- 🕑 Europe/Warsaw
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 45.138.16.0 - 45.138.19.255
- last_activity
- 2026-04-24 19:30:14
- last_warden_event
- 2026-04-24 19:30:14
- rep
- 0.016666666666666666
- reserved_range
- 0
- ts_added
- 2026-04-22 22:08:47.905000
- ts_last_update
- 2026-05-06 07:59:50.963000
Warden event timeline
DShield event timeline
Presence on blacklists

