IP address


.52994.141.120.150
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus SBL
94.141.120.150 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-11-07 16:38:21.185000
Was present on blacklist at: 2024-10-03 16:38, 2024-10-10 16:38, 2024-10-17 16:38, 2024-10-24 16:38, 2024-10-31 16:38, 2024-11-07 16:38
Spamhaus XBL CBL
94.141.120.150 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-11-07 16:38:21.185000
Was present on blacklist at: 2024-10-03 16:38, 2024-10-17 16:38, 2024-10-24 16:38, 2024-10-31 16:38, 2024-11-07 16:38
Spamhaus DROP
94.141.120.150 is listed on the Spamhaus DROP blacklist.

Description: The Spamhaus DROP (Don't Route Or Peer) lists are advisory"drop all traffic" lists. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-11-07 16:38:21.185000
Was present on blacklist at: 2024-10-03 16:38, 2024-10-10 16:38, 2024-10-17 16:38, 2024-10-24 16:38, 2024-10-31 16:38, 2024-11-07 16:38
Turris greylist
94.141.120.150 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-13 22:15:00.208000
Was present on blacklist at: 2024-10-04 21:15, 2024-10-05 21:15, 2024-10-06 21:15, 2024-10-07 21:15, 2024-10-12 21:15, 2024-10-13 21:15, 2024-10-14 21:15, 2024-10-18 21:15, 2024-10-19 21:15, 2024-10-20 21:15, 2024-10-21 21:15, 2024-10-22 21:15, 2024-10-23 21:15, 2024-10-24 21:15, 2024-10-25 21:15, 2024-10-26 21:15, 2024-10-27 22:15, 2024-10-28 22:15, 2024-10-29 22:15, 2024-10-30 22:15, 2024-10-31 22:15, 2024-11-01 22:15, 2024-11-04 22:15, 2024-11-05 22:15, 2024-11-06 22:15, 2024-11-07 22:15, 2024-11-08 22:15, 2024-11-09 22:15, 2024-11-10 22:15, 2024-11-11 22:15, 2024-11-12 22:15, 2024-11-13 22:15
Spamhaus SBL CSS
94.141.120.150 is listed on the Spamhaus SBL CSS blacklist.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2024-11-07 16:38:21.185000
Was present on blacklist at: 2024-10-10 16:38, 2024-10-17 16:38, 2024-10-24 16:38, 2024-10-31 16:38, 2024-11-07 16:38
blocklist.de mail
94.141.120.150 is listed on the blocklist.de mail blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing Mail attacks.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-11 11:05:05.504000
Was present on blacklist at: 2024-10-11 10:05, 2024-10-11 22:05, 2024-10-12 04:05, 2024-10-12 10:05, 2024-10-12 22:05, 2024-10-13 04:05, 2024-10-13 10:05, 2024-10-13 16:05, 2024-10-13 22:05, 2024-10-14 04:05, 2024-10-14 10:05, 2024-10-14 16:05, 2024-10-14 22:05, 2024-10-15 04:05, 2024-10-15 10:05, 2024-10-15 22:05, 2024-10-23 10:05, 2024-10-23 22:05, 2024-10-24 04:05, 2024-10-24 10:05, 2024-10-24 22:05, 2024-10-25 04:05, 2024-10-25 10:05, 2024-10-25 16:05, 2024-10-25 22:05, 2024-10-26 04:05, 2024-10-26 10:05, 2024-10-26 16:05, 2024-10-26 22:05, 2024-10-27 05:05, 2024-10-27 11:05, 2024-10-27 23:05, 2024-10-28 05:05, 2024-10-28 11:05, 2024-10-28 23:05, 2024-10-29 05:05, 2024-10-29 11:05, 2024-10-29 23:05, 2024-10-30 05:05, 2024-10-30 11:05, 2024-10-30 23:05, 2024-11-03 11:05, 2024-11-03 17:05, 2024-11-03 23:05, 2024-11-04 05:05, 2024-11-04 11:05, 2024-11-04 17:05, 2024-11-04 23:05, 2024-11-05 05:05, 2024-11-06 23:05, 2024-11-07 05:05, 2024-11-07 11:05, 2024-11-07 23:05, 2024-11-08 05:05, 2024-11-08 11:05, 2024-11-08 23:05, 2024-11-09 05:05, 2024-11-09 11:05, 2024-11-09 23:05, 2024-11-10 05:05, 2024-11-10 11:05, 2024-11-10 23:05, 2024-11-11 11:05
blocklist.de IMAP
94.141.120.150 is listed on the blocklist.de IMAP blacklist.

Description: Blocklist.de feed is a free and voluntary service<br>provided by a Fraud/Abuse-specialist. IPs performing attacks<br>on the Service imap, sasl, pop3.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-10 11:05:05.268000
Was present on blacklist at: 2024-10-12 04:05, 2024-10-12 10:05, 2024-10-12 16:05, 2024-10-12 22:05, 2024-10-13 04:05, 2024-10-13 10:05, 2024-10-13 16:05, 2024-10-13 22:05, 2024-10-14 04:05, 2024-10-14 10:05, 2024-10-14 16:05, 2024-10-14 22:05, 2024-10-15 04:05, 2024-10-15 10:05, 2024-10-15 16:05, 2024-10-15 22:05, 2024-10-23 10:05, 2024-10-23 16:05, 2024-10-23 22:05, 2024-10-24 04:05, 2024-10-24 10:05, 2024-10-24 16:05, 2024-10-24 22:05, 2024-10-25 04:05, 2024-10-25 10:05, 2024-10-25 16:05, 2024-10-25 22:05, 2024-10-26 04:05, 2024-10-26 10:05, 2024-10-26 16:05, 2024-10-26 22:05, 2024-10-27 05:05, 2024-10-27 11:05, 2024-10-27 17:05, 2024-10-27 23:05, 2024-10-28 05:05, 2024-10-28 11:05, 2024-10-28 17:05, 2024-10-28 23:05, 2024-11-06 23:05, 2024-11-07 05:05, 2024-11-07 11:05, 2024-11-07 17:05, 2024-11-07 23:05, 2024-11-08 05:05, 2024-11-08 11:05, 2024-11-08 17:05, 2024-11-08 23:05, 2024-11-09 05:05, 2024-11-09 11:05, 2024-11-09 17:05, 2024-11-09 23:05, 2024-11-10 05:05, 2024-11-10 11:05
AbuseIPDB
94.141.120.150 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2024-11-06 05:00:00.495000
Was present on blacklist at: 2024-10-18 04:00, 2024-10-19 04:00, 2024-10-24 04:00, 2024-10-25 04:00, 2024-10-26 04:00, 2024-10-27 05:00, 2024-10-28 05:00, 2024-11-04 05:00, 2024-11-06 05:00
FireHOL anonymizers
94.141.120.150 is listed on the FireHOL anonymizers blacklist.

Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed: secondary (feed detail page)

Last checked at: 2024-11-13 12:14:27
Was present on blacklist at: 2024-11-01 12:11, 2024-11-02 12:09, 2024-11-03 12:10, 2024-11-04 12:09, 2024-11-05 12:08, 2024-11-06 12:08, 2024-11-07 12:08, 2024-11-08 12:09, 2024-11-09 12:08, 2024-11-10 12:08, 2024-11-11 06:10, 2024-11-12 12:21, 2024-11-13 12:14
UCEPROTECT L1
94.141.120.150 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-13 08:45:00.876000
Was present on blacklist at: 2024-11-03 16:45, 2024-11-04 00:45, 2024-11-04 08:45, 2024-11-04 16:45, 2024-11-05 00:45, 2024-11-05 08:45, 2024-11-05 16:45, 2024-11-06 00:45, 2024-11-06 08:45, 2024-11-06 16:45, 2024-11-07 00:45, 2024-11-07 08:45, 2024-11-07 16:45, 2024-11-08 00:45, 2024-11-08 08:45, 2024-11-08 16:45, 2024-11-09 00:45, 2024-11-09 08:45, 2024-11-09 16:45, 2024-11-10 00:45, 2024-11-10 08:45, 2024-11-10 16:45, 2024-11-11 00:45, 2024-11-11 08:45, 2024-11-11 16:45, 2024-11-12 00:45, 2024-11-12 08:45, 2024-11-12 16:45, 2024-11-13 00:45, 2024-11-13 08:45
blocklist.de SIP
94.141.120.150 is listed on the blocklist.de SIP blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IP addresses that tried to login in a SIP,<br>VOIP or Asterisk Server.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-13 11:05:05.253000
Was present on blacklist at: 2024-11-11 17:05, 2024-11-11 23:05, 2024-11-12 05:05, 2024-11-12 11:05, 2024-11-12 17:05, 2024-11-12 23:05, 2024-11-13 05:05, 2024-11-13 11:05
Warden events (56871)
2024-11-14
IntrusionUserCompromise (node.cfb4f7): 107
2024-11-13
IntrusionUserCompromise (node.cfb4f7): 606
2024-11-12
IntrusionUserCompromise (node.cfb4f7): 624
2024-11-11
IntrusionUserCompromise (node.cfb4f7): 593
2024-11-10
IntrusionUserCompromise (node.cfb4f7): 221
2024-11-09
IntrusionUserCompromise (node.cfb4f7): 1470
2024-11-08
IntrusionUserCompromise (node.cfb4f7): 2340
2024-11-07
IntrusionUserCompromise (node.cfb4f7): 1619
2024-11-06
IntrusionUserCompromise (node.cfb4f7): 1943
2024-11-05
IntrusionUserCompromise (node.cfb4f7): 3290
ReconScanning (node.ce2b59): 15
2024-11-04
IntrusionUserCompromise (node.cfb4f7): 3051
ReconScanning (node.ce2b59): 32
2024-11-03
ReconScanning (node.ce2b59): 31
IntrusionUserCompromise (node.cfb4f7): 2237
2024-11-02
ReconScanning (node.ce2b59): 10
2024-11-01
IntrusionUserCompromise (node.cfb4f7): 1368
2024-10-31
IntrusionUserCompromise (node.cfb4f7): 3328
2024-10-30
IntrusionUserCompromise (node.cfb4f7): 3227
2024-10-29
IntrusionUserCompromise (node.cfb4f7): 1377
2024-10-28
IntrusionUserCompromise (node.cfb4f7): 183
2024-10-27
IntrusionUserCompromise (node.cfb4f7): 3745
2024-10-26
IntrusionUserCompromise (node.cfb4f7): 7214
2024-10-25
IntrusionUserCompromise (node.cfb4f7): 2011
2024-10-24
IntrusionUserCompromise (node.cfb4f7): 5926
2024-10-23
IntrusionUserCompromise (node.cfb4f7): 3634
2024-10-22
IntrusionUserCompromise (node.cfb4f7): 474
2024-10-21
IntrusionUserCompromise (node.cfb4f7): 358
2024-10-20
IntrusionUserCompromise (node.cfb4f7): 48
2024-10-19
IntrusionUserCompromise (node.cfb4f7): 413
2024-10-18
IntrusionUserCompromise (node.cfb4f7): 382
2024-10-17
IntrusionUserCompromise (node.cfb4f7): 164
2024-10-14
IntrusionUserCompromise (node.cfb4f7): 132
2024-10-13
IntrusionUserCompromise (node.cfb4f7): 819
2024-10-12
IntrusionUserCompromise (node.cfb4f7): 632
2024-10-11
IntrusionUserCompromise (node.cfb4f7): 561
2024-10-07
IntrusionUserCompromise (node.cfb4f7): 107
2024-10-06
IntrusionUserCompromise (node.cfb4f7): 741
2024-10-05
IntrusionUserCompromise (node.cfb4f7): 784
2024-10-04
IntrusionUserCompromise (node.cfb4f7): 822
2024-10-03
IntrusionUserCompromise (node.cfb4f7): 232
DShield reports (IP summary, reports)
2024-11-03
Number of reports: 16
Distinct targets: 6
Origin AS
AS51396 - PFCLOUD
AS214940 - KPRONET
BGP Prefix
94.141.120.0/24
geo
Montenegro
🕑 Europe/Podgorica
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
94.141.120.0 - 94.141.123.255
last_activity
2024-11-14 03:28:59
last_warden_event
2024-11-14 03:28:59
rep
0.5285621279761904
reserved_range
0
Shodan's InternetDB
Open ports: 3389
Tags: self-signed
CPEs:
ts_added
2024-10-03 16:38:11.369000
ts_last_update
2024-11-14 03:53:55.830000

Warden event timeline

DShield event timeline

Presence on blacklists