IP address


.00595.214.55.47
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
FireHOL anonymizers
95.214.55.47 is listed on the FireHOL anonymizers blacklist.

Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed: secondary (feed detail page)

Last checked at: 2025-12-28 00:05:10
Was present on blacklist at: 2025-12-01 00:05, 2025-12-02 00:05, 2025-12-03 00:05, 2025-12-04 00:05, 2025-12-05 00:05, 2025-12-06 00:05, 2025-12-07 00:05, 2025-12-08 00:05, 2025-12-09 00:05, 2025-12-10 00:05, 2025-12-11 00:05, 2025-12-12 00:05, 2025-12-13 00:05, 2025-12-14 00:05, 2025-12-15 00:05, 2025-12-16 00:05, 2025-12-17 00:05, 2025-12-18 00:05, 2025-12-19 00:05, 2025-12-20 00:05, 2025-12-21 00:05, 2025-12-22 00:05, 2025-12-23 00:05, 2025-12-24 00:05, 2025-12-25 00:05, 2025-12-26 00:05, 2025-12-27 00:05, 2025-12-28 00:05
CI Army
95.214.55.47 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-12-26 03:50:01.028000
Was present on blacklist at: 2025-12-04 03:50, 2025-12-05 03:50, 2025-12-06 03:50, 2025-12-07 03:50, 2025-12-08 03:50, 2025-12-09 03:50, 2025-12-10 03:50, 2025-12-11 03:50, 2025-12-12 03:50, 2025-12-13 03:50, 2025-12-14 03:50, 2025-12-15 03:50, 2025-12-16 03:50, 2025-12-17 03:50, 2025-12-18 03:50, 2025-12-25 03:50, 2025-12-26 03:50
AbuseIPDB
95.214.55.47 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-12-09 05:00:00.717000
Was present on blacklist at: 2025-12-05 05:00, 2025-12-06 05:00, 2025-12-08 05:00, 2025-12-09 05:00
Turris greylist
95.214.55.47 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-07 22:15:00.196000
Was present on blacklist at: 2025-12-07 22:15
DShield Block
95.214.55.47 was recently listed on the DShield Block blacklist, but currently it is not.

Description: Recommended Block List by DShield.org. It summarizes the top 20 attacking<br>class C (/24) subnets over the last three days.
Type of feed: secondary (feed detail page)

Last checked at: 2025-12-27 04:50:00
Was present on blacklist at: 2025-12-21 04:50, 2025-12-22 04:50, 2025-12-24 04:50, 2025-12-25 04:50
Warden events (450)
2025-12-15
ReconScanning (node.9c1411): 48
2025-12-14
ReconScanning (node.9c1411): 24
2025-12-13
ReconScanning (node.9c1411): 43
2025-12-12
ReconScanning (node.9c1411): 34
2025-12-10
ReconScanning (node.9c1411): 3
2025-12-09
ReconScanning (node.9c1411): 70
AnomalyTraffic (node.ffe95c): 4
ReconScanning (node.4dc198): 3
ReconScanning (node.368407): 2
2025-12-08
ReconScanning (node.9c1411): 28
AnomalyTraffic (node.ffe95c): 2
2025-12-07
ReconScanning (node.9c1411): 56
2025-12-06
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.9c1411): 5
2025-12-05
ReconScanning (node.9c1411): 6
AnomalyTraffic (node.ffe95c): 3
2025-12-04
AnomalyTraffic (node.ffe95c): 5
ReconScanning (node.4dc198): 9
ReconScanning (node.368407): 9
ReconScanning (node.9c1411): 2
2025-12-03
ReconScanning (node.9c1411): 3
2025-12-02
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
ReconScanning (node.368407): 1
2025-12-01
ReconScanning (node.4dc198): 37
AnomalyTraffic (node.ffe95c): 14
ReconScanning (node.368407): 36
DShield reports (IP summary, reports)
2025-12-01
Number of reports: 608
Distinct targets: 207
2025-12-02
Number of reports: 608
Distinct targets: 207
2025-12-03
Number of reports: 24
Distinct targets: 9
2025-12-04
Number of reports: 688
Distinct targets: 459
2025-12-05
Number of reports: 4384
Distinct targets: 229
2025-12-06
Number of reports: 3132
Distinct targets: 234
2025-12-07
Number of reports: 3132
Distinct targets: 234
2025-12-08
Number of reports: 8871
Distinct targets: 261
2025-12-09
Number of reports: 4900
Distinct targets: 271
2025-12-10
Number of reports: 155
Distinct targets: 64
2025-12-14
Number of reports: 236
Distinct targets: 176
2025-12-16
Number of reports: 106
Distinct targets: 96
Origin AS
AS201814 - PL-SKYTECH-AS
BGP Prefix
95.214.54.0/23
geo
Poland
🕑 Europe/Warsaw
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
95.214.52.0 - 95.214.55.255
last_activity
2025-12-15 12:55:09
last_warden_event
2025-12-15 12:55:09
rep
0.0047619047619047615
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 25, 53, 80, 110, 443, 465, 587, 995, 8080, 8083
Tags: self-signed, starttls
CPEs: cpe:/a:f5:nginx, cpe:/a:openbsd:openssh:9.2p1
ts_added
2025-12-01 00:00:47.643000
ts_last_update
2025-12-28 00:00:50.100000

Warden event timeline

DShield event timeline

Presence on blacklists