IP address


.000112.218.110.138
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus PBL
112.218.110.138 is listed on the Spamhaus PBL blacklist.

Description: The Spamhaus PBL is a DNSBL database of end-user IP address ranges which should not be delivering unauthenticated SMTP email to any Internet mail server except those provided for specifically by an ISP for that customer's use.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-04-01 22:05:10.966000
Was present on blacklist at: 2026-01-14 22:05, 2026-01-21 22:05, 2026-01-28 22:05, 2026-02-04 22:05, 2026-02-11 22:05, 2026-02-18 22:05, 2026-02-25 22:05, 2026-03-04 22:05, 2026-03-11 22:05, 2026-03-18 22:05, 2026-03-25 22:05, 2026-04-01 22:05
Turris greylist
112.218.110.138 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-02-27 22:15:00.111000
Was present on blacklist at: 2026-01-08 22:15, 2026-01-15 22:15, 2026-01-17 22:15, 2026-01-20 22:15, 2026-01-21 22:15, 2026-01-23 22:15, 2026-01-25 22:15, 2026-01-27 22:15, 2026-01-28 22:15, 2026-01-31 22:15, 2026-02-02 22:15, 2026-02-05 22:15, 2026-02-08 22:15, 2026-02-09 22:15, 2026-02-10 22:15, 2026-02-11 22:15, 2026-02-12 22:15, 2026-02-14 22:15, 2026-02-15 22:15, 2026-02-19 22:15, 2026-02-25 22:15, 2026-02-27 22:15
blocklist.de FTP
112.218.110.138 is listed on the blocklist.de FTP blacklist.

Description: Blocklist.de feed is a free and voluntary service<br>provided by a Fraud/Abuse-specialist. IPs performing attacks<br>on the Service FTP.
Type of feed: primary (feed detail page)

Last checked at: 2026-02-22 23:05:00.074000
Was present on blacklist at: 2026-02-08 11:05, 2026-02-08 17:05, 2026-02-08 23:05, 2026-02-09 05:05, 2026-02-09 11:05, 2026-02-09 17:05, 2026-02-09 23:05, 2026-02-10 05:05, 2026-02-17 23:05, 2026-02-18 05:05, 2026-02-18 11:05, 2026-02-18 17:05, 2026-02-18 23:05, 2026-02-19 05:05, 2026-02-19 11:05, 2026-02-19 17:05, 2026-02-21 05:05, 2026-02-21 11:05, 2026-02-21 17:05, 2026-02-21 23:05, 2026-02-22 05:05, 2026-02-22 11:05, 2026-02-22 17:05, 2026-02-22 23:05

Threat categories

TLRoleCategoryDetails
No threat category tags assigned

Warden events (29370)
2026-03-13
IntrusionUserCompromise (node.cfb4f7): 6
2026-03-12
IntrusionUserCompromise (node.cfb4f7): 419
2026-03-11
IntrusionUserCompromise (node.cfb4f7): 884
2026-03-10
IntrusionUserCompromise (node.cfb4f7): 928
2026-03-08
IntrusionUserCompromise (node.cfb4f7): 937
2026-03-06
IntrusionUserCompromise (node.cfb4f7): 1425
2026-03-04
IntrusionUserCompromise (node.cfb4f7): 453
2026-03-03
IntrusionUserCompromise (node.cfb4f7): 313
2026-03-01
IntrusionUserCompromise (node.cfb4f7): 313
2026-02-26
IntrusionUserCompromise (node.cfb4f7): 228
2026-02-24
IntrusionUserCompromise (node.cfb4f7): 277
2026-02-23
IntrusionUserCompromise (node.cfb4f7): 205
2026-02-22
IntrusionUserCompromise (node.cfb4f7): 408
2026-02-19
IntrusionUserCompromise (node.cfb4f7): 302
2026-02-17
IntrusionUserCompromise (node.cfb4f7): 751
2026-02-14
IntrusionUserCompromise (node.cfb4f7): 881
2026-02-13
IntrusionUserCompromise (node.cfb4f7): 755
2026-02-12
IntrusionUserCompromise (node.cfb4f7): 529
2026-02-11
IntrusionUserCompromise (node.cfb4f7): 1
2026-02-10
IntrusionUserCompromise (node.cfb4f7): 224
2026-02-09
IntrusionUserCompromise (node.cfb4f7): 1137
2026-02-08
IntrusionUserCompromise (node.cfb4f7): 584
2026-02-07
IntrusionUserCompromise (node.cfb4f7): 331
2026-02-05
IntrusionUserCompromise (node.cfb4f7): 335
2026-02-03
IntrusionUserCompromise (node.cfb4f7): 321
2026-02-02
IntrusionUserCompromise (node.cfb4f7): 364
2026-02-01
IntrusionUserCompromise (node.cfb4f7): 312
2026-01-31
IntrusionUserCompromise (node.cfb4f7): 284
2026-01-30
IntrusionUserCompromise (node.cfb4f7): 440
2026-01-28
IntrusionUserCompromise (node.cfb4f7): 829
2026-01-27
IntrusionUserCompromise (node.cfb4f7): 498
2026-01-26
IntrusionUserCompromise (node.cfb4f7): 1048
2026-01-24
IntrusionUserCompromise (node.cfb4f7): 1266
2026-01-23
IntrusionUserCompromise (node.cfb4f7): 549
2026-01-22
IntrusionUserCompromise (node.cfb4f7): 624
2026-01-21
IntrusionUserCompromise (node.cfb4f7): 973
2026-01-20
IntrusionUserCompromise (node.cfb4f7): 440
2026-01-19
IntrusionUserCompromise (node.cfb4f7): 795
2026-01-18
IntrusionUserCompromise (node.cfb4f7): 399
2026-01-17
IntrusionUserCompromise (node.cfb4f7): 549
2026-01-16
IntrusionUserCompromise (node.cfb4f7): 1701
2026-01-15
IntrusionUserCompromise (node.cfb4f7): 256
2026-01-14
IntrusionUserCompromise (node.cfb4f7): 895
2026-01-12
IntrusionUserCompromise (node.cfb4f7): 930
2026-01-10
IntrusionUserCompromise (node.cfb4f7): 1731
2026-01-07
IntrusionUserCompromise (node.cfb4f7): 1540
Origin AS
AS3786 - LGDACOM LGDACOM-KR
BGP Prefix
112.216.0.0/13
dshield
[]
geo
South Korea, Gyeonggi-do
🕑 Asia/Seoul
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
112.216.0.0 - 112.223.255.255
last_activity
2026-03-13 00:05:48
last_warden_event
2026-03-13 00:05:48
rep
0.0
reserved_range
0
ts_added
2024-08-28 22:05:06.269000
ts_last_update
2026-04-07 22:05:11.111000

Warden event timeline

DShield event timeline

Presence on blacklists