IP address


.012109.104.121.237
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
109.104.121.237 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-12-13 03:50:01.120000
Was present on blacklist at: 2025-12-02 03:50, 2025-12-03 03:50, 2025-12-04 03:50, 2025-12-05 03:50, 2025-12-06 03:50, 2025-12-07 03:50, 2025-12-08 03:50, 2025-12-09 03:50, 2025-12-10 03:50, 2025-12-12 03:50, 2025-12-13 03:50
Warden events (6)
2025-12-08
ReconScanning (node.368407): 1
2025-12-01
ReconScanning (node.368407): 5
DShield reports (IP summary, reports)
2025-12-01
Number of reports: 16
Distinct targets: 4
2025-12-02
Number of reports: 16
Distinct targets: 4
Origin AS
AS25577 - C4L-AS
BGP Prefix
109.104.120.0/21
geo
United Kingdom
🕑 Europe/London
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
109.104.96.0 - 109.104.127.255
last_activity
2025-12-08 12:30:37
last_warden_event
2025-12-08 12:30:37
rep
0.011904761904761906
reserved_range
0
Shodan's InternetDB
Open ports: 443, 500
Tags: vpn, self-signed
CPEs:
ts_added
2025-12-01 22:36:54.681000
ts_last_update
2025-12-17 22:37:00.722000

Warden event timeline

DShield event timeline

Presence on blacklists