IP address


.12985.120.81.3deface
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
85.120.81.3 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-11-02 03:50:00.818000
Was present on blacklist at: 2025-10-30 03:50, 2025-10-31 03:50, 2025-11-01 03:50, 2025-11-02 03:50
AbuseIPDB
85.120.81.3 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-10-30 05:00:00.750000
Was present on blacklist at: 2025-10-30 05:00
Warden events (13)
2025-10-30
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
ReconScanning (node.368407): 1
ReconScanning (node.9c1411): 1
2025-10-29
AnomalyTraffic (node.ffe95c): 2
ReconScanning (node.4dc198): 2
ReconScanning (node.368407): 2
ReconScanning (node.9c1411): 1
2025-09-25
ReconScanning (node.9c1411): 2
DShield reports (IP summary, reports)
2025-09-20
Number of reports: 22
Distinct targets: 18
2025-09-21
Number of reports: 33
Distinct targets: 31
2025-10-07
Number of reports: 37
Distinct targets: 29
2025-10-08
Number of reports: 37
Distinct targets: 29
2025-10-09
Number of reports: 42
Distinct targets: 34
2025-10-11
Number of reports: 74
Distinct targets: 58
2025-10-12
Number of reports: 74
Distinct targets: 58
2025-10-15
Number of reports: 92
Distinct targets: 71
2025-10-17
Number of reports: 82
Distinct targets: 64
2025-10-21
Number of reports: 40
Distinct targets: 35
2025-10-23
Number of reports: 118
Distinct targets: 93
2025-10-24
Number of reports: 118
Distinct targets: 93
2025-10-29
Number of reports: 114
Distinct targets: 92
2025-10-30
Number of reports: 249
Distinct targets: 161
Origin AS
AS200019 - AlexHost
BGP Prefix
85.120.81.0/24
geo
Moldova, Chisinau
🕑 Europe/Chisinau
hostname
deface
Address block ('inetnum' or 'NetRange' in whois database)
85.120.0.0 - 85.123.255.255
last_activity
2025-10-30 12:22:08
last_warden_event
2025-10-30 12:22:08
rep
0.1289760044642857
reserved_range
0
ts_added
2025-09-21 05:04:18.470000
ts_last_update
2025-11-05 05:05:50.582000

Warden event timeline

DShield event timeline

Presence on blacklists