IP address


--45.144.212.74
Shodan(more info)
Passive DNS
Tags:
IP blacklists
blocklist.de SSH
45.144.212.74 is listed on the blocklist.de SSH blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing SSH attacks.
Type of feed: primary (feed detail page)

Last checked at: 2025-05-21 10:05:05.381000
Was present on blacklist at: 2025-05-12 16:05, 2025-05-12 22:05, 2025-05-13 04:05, 2025-05-13 10:05, 2025-05-13 16:05, 2025-05-13 22:05, 2025-05-14 04:05, 2025-05-14 10:05, 2025-05-14 16:05, 2025-05-14 22:05, 2025-05-15 04:05, 2025-05-15 10:05, 2025-05-15 16:05, 2025-05-15 22:05, 2025-05-16 04:05, 2025-05-16 10:05, 2025-05-16 16:05, 2025-05-19 16:05, 2025-05-19 22:05, 2025-05-20 04:05, 2025-05-20 10:05, 2025-05-20 16:05, 2025-05-20 22:05, 2025-05-21 04:05, 2025-05-21 10:05
Spamhaus SBL
45.144.212.74 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-06-30 16:08:31.363000
Was present on blacklist at: 2025-05-12 16:08, 2025-05-19 16:08, 2025-05-26 16:08, 2025-06-02 16:08, 2025-06-09 16:08, 2025-06-16 16:08, 2025-06-23 16:08, 2025-06-30 16:08
Spamhaus DROP
45.144.212.74 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-06-30 16:08:31.363000
Was present on blacklist at: 2025-05-12 16:08, 2025-05-19 16:08, 2025-05-26 16:08, 2025-06-02 16:08, 2025-06-09 16:08, 2025-06-16 16:08, 2025-06-23 16:08, 2025-06-30 16:08
AbuseIPDB
45.144.212.74 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-06-21 04:00:00.774000
Was present on blacklist at: 2025-05-18 04:00, 2025-05-19 04:00, 2025-05-20 04:00, 2025-05-21 04:00, 2025-05-22 04:00, 2025-05-23 04:00, 2025-05-24 04:00, 2025-05-25 04:00, 2025-05-26 04:00, 2025-05-27 04:00, 2025-05-28 04:00, 2025-05-29 04:00, 2025-05-30 04:00, 2025-05-31 04:00, 2025-06-01 04:00, 2025-06-02 04:00, 2025-06-03 04:00, 2025-06-04 04:00, 2025-06-05 04:00, 2025-06-06 04:00, 2025-06-07 04:00, 2025-06-08 04:00, 2025-06-09 04:00, 2025-06-11 04:00, 2025-06-12 04:00, 2025-06-13 04:00, 2025-06-14 04:00, 2025-06-15 04:00, 2025-06-16 04:00, 2025-06-18 04:00, 2025-06-19 04:00, 2025-06-20 04:00, 2025-06-21 04:00
DShield Block
45.144.212.74 was recently listed on the DShield Block blacklist, but currently it is not.

Description: Recommended Block List by DShield.org. It summarizes the top 20 attacking<br>class C (/24) subnets over the last three days.
Type of feed: secondary (feed detail page)

Last checked at: 2025-07-02 04:50:00
Was present on blacklist at: 2025-05-24 04:50
Turris greylist
45.144.212.74 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-06-15 21:15:00.182000
Was present on blacklist at: 2025-05-28 21:15, 2025-06-03 21:15, 2025-06-08 21:15, 2025-06-15 21:15
DShield reports (IP summary, reports)
2025-05-12
Number of reports: 65
Distinct targets: 3
2025-05-22
Number of reports: 66
Distinct targets: 66
2025-05-23
Number of reports: 456
Distinct targets: 281
2025-05-24
Number of reports: 704
Distinct targets: 428
2025-05-25
Number of reports: 503
Distinct targets: 414
2025-05-26
Number of reports: 684
Distinct targets: 418
2025-05-28
Number of reports: 438
Distinct targets: 355
2025-05-29
Number of reports: 475
Distinct targets: 386
2025-05-30
Number of reports: 446
Distinct targets: 350
2025-05-31
Number of reports: 494
Distinct targets: 388
2025-06-01
Number of reports: 476
Distinct targets: 400
2025-06-02
Number of reports: 533
Distinct targets: 360
2025-06-03
Number of reports: 386
Distinct targets: 319
2025-06-04
Number of reports: 536
Distinct targets: 317
2025-06-05
Number of reports: 501
Distinct targets: 302
2025-06-06
Number of reports: 507
Distinct targets: 308
2025-06-07
Number of reports: 417
Distinct targets: 326
2025-06-08
Number of reports: 559
Distinct targets: 332
2025-06-09
Number of reports: 547
Distinct targets: 330
2025-06-10
Number of reports: 216
Distinct targets: 141
2025-06-11
Number of reports: 538
Distinct targets: 318
2025-06-12
Number of reports: 476
Distinct targets: 288
2025-06-13
Number of reports: 345
Distinct targets: 274
2025-06-14
Number of reports: 407
Distinct targets: 321
2025-06-15
Number of reports: 398
Distinct targets: 313
2025-06-16
Number of reports: 328
Distinct targets: 271
2025-06-17
Number of reports: 340
Distinct targets: 270
2025-06-18
Number of reports: 351
Distinct targets: 277
2025-06-19
Number of reports: 374
Distinct targets: 288
2025-06-20
Number of reports: 248
Distinct targets: 208
2025-06-21
Number of reports: 303
Distinct targets: 171
Origin AS
AS60721 - bursabil
AS214940 - KPRONET
BGP Prefix
45.144.212.0/24
geo
Ukraine
🕑 Europe/Kyiv
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
45.144.212.0 - 45.144.215.255
reserved_range
0
Shodan's InternetDB
Open ports: 22, 25, 80, 110, 143, 389, 443, 465, 587, 993, 995
Tags: starttls
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:postfix:postfix, cpe:/a:roundcube:webmail, cpe:/a:f5:nginx, cpe:/a:php:php, cpe:/a:jquery:jquery, cpe:/a:getbootstrap:bootstrap, cpe:/a:openbsd:openssh:8.9p1, cpe:/a:jquery:jquery_ui
ts_added
2025-05-12 16:08:28.560000
ts_last_update
2025-07-02 16:08:31.224000

Warden event timeline

DShield event timeline

Presence on blacklists