IP address


.000104.248.171.40
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
104.248.171.40 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-04-29 02:50:01.111000
Was present on blacklist at: 2025-04-21 02:50, 2025-04-25 02:50, 2025-04-27 02:50, 2025-04-28 02:50, 2025-04-29 02:50
Warden events (5)
2025-04-20
ReconScanning (node.9c1411): 5
DShield reports (IP summary, reports)
2025-04-20
Number of reports: 13
Distinct targets: 9
2025-04-24
Number of reports: 14
Distinct targets: 6
Origin AS
AS14061 - DIGITALOCEAN-ASN
BGP Prefix
104.248.160.0/20
geo
United Kingdom, Slough
🕑 Europe/London
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
104.248.0.0 - 104.248.255.255
last_activity
2025-04-20 12:58:12
last_warden_event
2025-04-20 12:58:12
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22, 23, 79, 80, 102, 104, 111, 427, 444, 445, 500, 515, 522, 541, 636, 902, 1234, 1414, 1433, 1443, 1521, 1925, 1935, 2000, 2101, 2222, 2323, 2332, 2601, 2602, 3014, 3047, 3106, 3110, 3200, 3301, 3341, 3407, 3521, 3522, 4101, 4434, 4443, 4620, 5007, 5009, 5201, 5432, 5435, 5801, 5901, 6022, 6433, 6601, 6633, 7001, 7218, 7415, 7634, 8009, 8010, 8035, 8112, 8128, 8140, 8200, 8322, 8405, 8504, 8529, 8826, 8906, 9000, 9015, 9023, 9036, 9100, 9200, 9212, 9220, 9333, 9418, 9443, 9510, 9527, 9800, 10006, 10017, 10032, 10243, 11002, 11112, 11211, 11434
Tags: cloud, vpn
CPEs: cpe:/a:f5:nginx:1.26.3, cpe:/a:openbsd:openssh:7.6p1
ts_added
2025-04-20 02:08:15.074000
ts_last_update
2025-05-05 02:08:20.561000

Warden event timeline

DShield event timeline

Presence on blacklists