IP address


.000139.226.161.35
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
DataPlane SMTP greeting
139.226.161.35 is listed on the DataPlane SMTP greeting blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs that are<br>identified as SMTP clients issuing unsolicited HELO or EHLO commands.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-03 06:10:01.030000
Was present on blacklist at: 2025-03-27 07:10, 2025-03-27 11:10, 2025-03-27 15:10, 2025-03-27 19:10, 2025-03-27 23:10, 2025-03-28 03:10, 2025-03-28 07:10, 2025-03-28 11:10, 2025-03-28 15:10, 2025-03-28 19:10, 2025-03-28 23:10, 2025-03-29 03:10, 2025-03-29 07:10, 2025-03-29 11:10, 2025-03-29 15:10, 2025-03-29 19:10, 2025-03-29 23:10, 2025-03-30 02:10, 2025-03-30 06:10, 2025-03-30 10:10, 2025-03-30 14:10, 2025-03-30 18:10, 2025-03-30 22:10, 2025-03-31 02:10, 2025-03-31 06:10, 2025-03-31 10:10, 2025-03-31 14:10, 2025-03-31 18:10, 2025-03-31 22:10, 2025-04-01 02:10, 2025-04-01 06:10, 2025-04-01 10:10, 2025-04-01 14:10, 2025-04-01 18:10, 2025-04-01 22:10, 2025-04-02 02:10, 2025-04-02 06:10, 2025-04-02 10:10, 2025-04-02 14:10, 2025-04-02 18:10, 2025-04-02 22:10, 2025-04-03 02:10, 2025-04-03 06:10
Spamhaus XBL CBL
139.226.161.35 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-04-28 15:44:50.052000
Was present on blacklist at: 2025-04-21 15:44, 2025-04-28 15:44
Warden events (31)
2025-04-17
ReconScanning (node.9c1411): 1
2025-04-13
ReconScanning (node.9c1411): 1
2025-04-11
ReconScanning (node.9c1411): 1
2025-04-08
ReconScanning (node.9c1411): 1
2025-04-02
ReconScanning (node.9c1411): 1
2025-04-01
ReconScanning (node.9c1411): 2
2025-03-29
ReconScanning (node.9c1411): 1
2025-03-28
ReconScanning (node.9c1411): 1
2025-03-27
ReconScanning (node.9c1411): 3
2025-03-25
ReconScanning (node.9c1411): 1
2025-03-24
ReconScanning (node.9c1411): 1
2025-03-22
ReconScanning (node.9c1411): 3
2025-03-21
ReconScanning (node.9c1411): 2
2025-03-20
ReconScanning (node.9c1411): 1
2025-03-19
ReconScanning (node.9c1411): 1
2025-03-18
ReconScanning (node.9c1411): 2
2025-03-17
ReconScanning (node.9c1411): 3
2025-03-15
ReconScanning (node.9c1411): 1
2025-03-11
ReconScanning (node.9c1411): 3
2025-03-10
ReconScanning (node.9c1411): 1
Origin AS
AS17621 - CNCGROUP-SH
BGP Prefix
139.226.0.0/16
geo
China, Shanghai
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
139.226.0.0 - 139.227.255.255
last_activity
2025-04-17 17:22:31
last_warden_event
2025-04-17 17:22:31
rep
0.0
reserved_range
0
ts_added
2025-03-10 15:44:45.882000
ts_last_update
2025-05-01 15:44:50.291000

Warden event timeline

DShield event timeline

Presence on blacklists