IP address


.424104.243.34.165
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
104.243.34.165 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-04-06 02:50:00.993000
Was present on blacklist at: 2026-03-27 03:50, 2026-03-28 03:50, 2026-03-29 02:50, 2026-03-30 02:50, 2026-03-31 02:50, 2026-04-01 02:50, 2026-04-02 02:50, 2026-04-03 02:50, 2026-04-04 02:50, 2026-04-05 02:50, 2026-04-06 02:50
AbuseIPDB
104.243.34.165 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-04-06 04:00:00.569000
Was present on blacklist at: 2026-03-28 05:00, 2026-03-29 04:00, 2026-03-30 04:00, 2026-04-02 04:00, 2026-04-04 04:00, 2026-04-05 04:00, 2026-04-06 04:00
Spamhaus XBL CBL
104.243.34.165 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-04-03 03:51:53.111000
Was present on blacklist at: 2026-04-03 03:51

Threat categories

TLRoleCategoryDetails
59 src scan port: 3000, 8000, 8080, 8443, 8501, 8888
33 src

Warden events (1248)
2026-04-06
ReconScanning (node.4dc198): 43
ReconScanning (node.ce2b59): 5
ReconScanning (node.368407): 31
2026-04-05
ReconScanning (node.368407): 158
ReconScanning (node.4dc198): 220
ReconScanning (node.ce2b59): 29
ReconScanning (node.f90c6b): 1
2026-04-04
ReconScanning (node.368407): 194
ReconScanning (node.ce2b59): 28
ReconScanning (node.4dc198): 206
2026-04-03
ReconScanning (node.ce2b59): 26
ReconScanning (node.368407): 162
ReconScanning (node.4dc198): 145
DShield reports (IP summary, reports)
2026-03-27
Number of reports: 7240
Distinct targets: 2341
2026-03-28
Number of reports: 6250
Distinct targets: 2220
2026-03-29
Number of reports: 6250
Distinct targets: 2220
2026-03-30
Number of reports: 7841
Distinct targets: 2572
2026-03-31
Number of reports: 7841
Distinct targets: 2572
2026-04-01
Number of reports: 4785
Distinct targets: 1715
2026-04-02
Number of reports: 4409
Distinct targets: 2173
2026-04-03
Number of reports: 5585
Distinct targets: 2287
2026-04-04
Number of reports: 4807
Distinct targets: 2526
2026-04-05
Number of reports: 2187
Distinct targets: 1310
Origin AS
AS23470 - RELIABLESITE
BGP Prefix
104.243.34.0/24
geo
United States, Piscataway
🕑 America/New_York
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
104.243.32.0 - 104.243.47.255
last_activity
2026-04-06 16:35:29
last_warden_event
2026-04-06 16:35:29
rep
0.4244047619047619
reserved_range
0
ts_added
2026-03-27 03:51:49.134000
ts_last_update
2026-04-06 16:35:40.575000

Warden event timeline

DShield event timeline

Presence on blacklists