IP address


.23647.242.70.104
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
47.242.70.104 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2024-11-17 03:50:00.985000
Was present on blacklist at: 2024-08-20 02:50, 2024-08-21 02:50, 2024-08-22 02:50, 2024-08-23 02:50, 2024-08-24 02:50, 2024-08-25 02:50, 2024-09-03 02:50, 2024-09-04 02:50, 2024-09-05 02:50, 2024-09-06 02:50, 2024-09-07 02:50, 2024-09-08 02:50, 2024-09-09 02:50, 2024-09-10 02:50, 2024-09-21 02:50, 2024-09-22 02:50, 2024-09-23 02:50, 2024-09-24 02:50, 2024-09-25 02:50, 2024-09-26 02:50, 2024-09-27 02:50, 2024-09-28 02:50, 2024-09-29 02:50, 2024-09-30 02:50, 2024-10-01 02:50, 2024-10-06 02:50, 2024-10-07 02:50, 2024-10-08 02:50, 2024-10-09 02:50, 2024-10-10 02:50, 2024-10-11 02:50, 2024-10-12 02:50, 2024-10-13 02:50, 2024-10-14 02:50, 2024-10-22 02:50, 2024-10-23 02:50, 2024-10-24 02:50, 2024-10-25 02:50, 2024-10-26 02:50, 2024-10-27 03:50, 2024-11-12 03:50, 2024-11-13 03:50, 2024-11-14 03:50, 2024-11-15 03:50, 2024-11-16 03:50, 2024-11-17 03:50
AbuseIPDB
47.242.70.104 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2024-11-15 05:00:00.470000
Was present on blacklist at: 2024-08-23 04:00, 2024-08-24 04:00, 2024-08-25 04:00, 2024-08-29 04:00, 2024-08-30 04:00, 2024-08-31 04:00, 2024-09-02 04:00, 2024-09-03 04:00, 2024-09-04 04:00, 2024-09-05 04:00, 2024-09-11 04:00, 2024-09-14 04:00, 2024-09-21 04:00, 2024-09-22 04:00, 2024-09-23 04:00, 2024-09-29 04:00, 2024-10-08 04:00, 2024-10-09 04:00, 2024-10-11 04:00, 2024-10-12 04:00, 2024-10-13 04:00, 2024-10-14 04:00, 2024-10-15 04:00, 2024-10-19 04:00, 2024-10-22 04:00, 2024-10-25 04:00, 2024-10-31 05:00, 2024-11-01 05:00, 2024-11-02 05:00, 2024-11-03 05:00, 2024-11-06 05:00, 2024-11-09 05:00, 2024-11-10 05:00, 2024-11-12 05:00, 2024-11-13 05:00, 2024-11-14 05:00, 2024-11-15 05:00
Spamhaus XBL CBL
47.242.70.104 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-11-14 15:43:00.041000
Was present on blacklist at: 2024-08-29 15:43, 2024-09-05 15:43, 2024-09-12 15:43, 2024-09-19 15:43, 2024-09-26 15:43, 2024-10-03 15:43, 2024-10-10 15:43, 2024-10-17 15:43, 2024-10-24 15:43, 2024-10-31 15:43, 2024-11-07 15:43, 2024-11-14 15:43
blocklist.de web-login
47.242.70.104 is listed on the blocklist.de web-login blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs that attacks Joomla, Wordpress and<br>other Web-Logins with Brute-Force Logins.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-10 05:05:05.137000
Was present on blacklist at: 2024-11-05 11:05, 2024-11-05 17:05, 2024-11-05 23:05, 2024-11-06 05:05, 2024-11-06 11:05, 2024-11-06 17:05, 2024-11-06 23:05, 2024-11-07 05:05, 2024-11-08 11:05, 2024-11-08 17:05, 2024-11-08 23:05, 2024-11-09 05:05, 2024-11-09 11:05, 2024-11-09 17:05, 2024-11-09 23:05, 2024-11-10 05:05
Warden events (472)
2024-11-15
ReconScanning (node.ce2b59): 20
2024-11-14
ReconScanning (node.ce2b59): 5
2024-11-13
ReconScanning (node.ce2b59): 26
2024-11-12
ReconScanning (node.ce2b59): 32
2024-11-11
ReconScanning (node.ce2b59): 16
2024-11-03
ReconScanning (node.ce2b59): 27
2024-11-02
ReconScanning (node.ce2b59): 31
2024-11-01
ReconScanning (node.ce2b59): 32
2024-10-31
ReconScanning (node.ce2b59): 44
2024-10-30
ReconScanning (node.ce2b59): 23
2024-10-24
ReconScanning (node.ce2b59): 2
2024-10-22
ReconScanning (node.ce2b59): 2
2024-10-21
ReconScanning (node.ce2b59): 6
2024-10-14
ReconScanning (node.ce2b59): 1
2024-10-05
ReconScanning (node.ce2b59): 2
2024-09-25
ReconScanning (node.ce2b59): 1
2024-09-11
ReconScanning (node.ce2b59): 26
2024-09-10
ReconScanning (node.ce2b59): 29
2024-09-09
ReconScanning (node.ce2b59): 28
2024-09-08
ReconScanning (node.ce2b59): 28
2024-09-07
ReconScanning (node.ce2b59): 11
2024-09-06
ReconScanning (node.ce2b59): 9
2024-09-05
ReconScanning (node.ce2b59): 15
2024-09-04
ReconScanning (node.ce2b59): 25
2024-09-03
ReconScanning (node.ce2b59): 24
2024-09-02
ReconScanning (node.ce2b59): 7
DShield reports (IP summary, reports)
2024-08-19
Number of reports: 102
Distinct targets: 76
2024-08-20
Number of reports: 32
Distinct targets: 24
2024-08-21
Number of reports: 114
Distinct targets: 71
2024-08-22
Number of reports: 121
Distinct targets: 82
2024-08-23
Number of reports: 123
Distinct targets: 81
2024-08-24
Number of reports: 92
Distinct targets: 62
2024-08-29
Number of reports: 14
Distinct targets: 5
2024-09-01
Number of reports: 14
Distinct targets: 5
2024-09-02
Number of reports: 47
Distinct targets: 34
2024-09-03
Number of reports: 116
Distinct targets: 86
2024-09-04
Number of reports: 105
Distinct targets: 78
2024-09-05
Number of reports: 142
Distinct targets: 96
2024-09-06
Number of reports: 125
Distinct targets: 88
2024-09-07
Number of reports: 51
Distinct targets: 33
2024-09-08
Number of reports: 117
Distinct targets: 74
2024-09-09
Number of reports: 124
Distinct targets: 83
2024-09-10
Number of reports: 107
Distinct targets: 76
2024-09-11
Number of reports: 90
Distinct targets: 62
2024-09-14
Number of reports: 11
Distinct targets: 3
2024-09-20
Number of reports: 30
Distinct targets: 23
2024-09-21
Number of reports: 126
Distinct targets: 89
2024-09-22
Number of reports: 126
Distinct targets: 88
2024-09-23
Number of reports: 124
Distinct targets: 89
2024-09-24
Number of reports: 136
Distinct targets: 95
2024-09-25
Number of reports: 38
Distinct targets: 30
2024-09-26
Number of reports: 117
Distinct targets: 80
2024-09-27
Number of reports: 118
Distinct targets: 79
2024-09-28
Number of reports: 99
Distinct targets: 65
2024-09-29
Number of reports: 122
Distinct targets: 71
2024-10-05
Number of reports: 100
Distinct targets: 72
2024-10-06
Number of reports: 135
Distinct targets: 99
2024-10-07
Number of reports: 120
Distinct targets: 88
2024-10-08
Number of reports: 131
Distinct targets: 90
2024-10-09
Number of reports: 51
Distinct targets: 39
2024-10-10
Number of reports: 43
Distinct targets: 30
2024-10-11
Number of reports: 120
Distinct targets: 84
2024-10-12
Number of reports: 110
Distinct targets: 67
2024-10-13
Number of reports: 108
Distinct targets: 70
2024-10-14
Number of reports: 109
Distinct targets: 75
2024-10-21
Number of reports: 63
Distinct targets: 51
2024-10-22
Number of reports: 130
Distinct targets: 94
2024-10-23
Number of reports: 143
Distinct targets: 105
2024-10-24
Number of reports: 129
Distinct targets: 96
2024-10-25
Number of reports: 86
Distinct targets: 60
2024-10-30
Number of reports: 41
Distinct targets: 28
2024-10-31
Number of reports: 143
Distinct targets: 92
2024-11-01
Number of reports: 99
Distinct targets: 68
2024-11-02
Number of reports: 87
Distinct targets: 58
2024-11-03
Number of reports: 109
Distinct targets: 70
2024-11-11
Number of reports: 90
Distinct targets: 65
2024-11-12
Number of reports: 143
Distinct targets: 101
2024-11-13
Number of reports: 110
Distinct targets: 87
2024-11-14
Number of reports: 118
Distinct targets: 87
2024-11-15
Number of reports: 79
Distinct targets: 54
OTX pulses
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name:david3
Pulse modified:2024-11-17 15:55:19.936000
Indicator created:2024-11-10 20:55:22
Indicator role:scanning_host
Indicator title:404 NOT FOUND
Indicator expiration:2025-02-08 00:00:00
Origin AS
AS45102 - CNNIC-ALIBABA-CN-NET-AP
BGP Prefix
47.242.0.0/16
geo
Hong Kong, Hong Kong
🕑 Asia/Hong_Kong
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
47.240.0.0 - 47.243.255.255
last_activity
2024-11-17 16:31:32.552000
last_warden_event
2024-11-15 15:54:36
rep
0.23645769755045573
reserved_range
0
Shodan's InternetDB
Open ports: 22, 53, 443, 3306
Tags: scanner, database, cloud, eol-product
CPEs: cpe:/a:openbsd:openssh:8.9p1, cpe:/a:djangoproject:django, cpe:/o:linux:linux_kernel, cpe:/a:jquery:jquery, cpe:/a:python:python, cpe:/o:canonical:ubuntu_linux, cpe:/a:f5:nginx:1.18.0, cpe:/a:getbootstrap:bootstrap, cpe:/a:oracle:mysql:8.0.39-0ubuntu0.22.04.1
ts_added
2024-08-15 15:42:53.109000
ts_last_update
2024-11-17 16:31:32.646000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses