IP address
Tags:
Static IP
Residential proxy
- IP blacklists
Spamhaus SBL CSS
14.225.2.98 is listed on the Spamhaus SBL CSS blacklist.
Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed:
secondary (DNSBL) (
feed detail page)
Last checked at:
2026-09-15 00:20:31.990000
Was present on blacklist at:
2026-09-08 00:20,
2026-09-15 00:20
Spamhaus XBL CBL
14.225.2.98 is listed on the Spamhaus XBL CBL blacklist.
Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed:
secondary (DNSBL) (
feed detail page)
Last checked at:
2026-09-15 00:20:31.990000
Was present on blacklist at:
2026-09-08 00:20,
2026-09-15 00:20
FireHOL anonymizers
14.225.2.98 is listed on the FireHOL anonymizers blacklist.
Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed:
secondary (
feed detail page)
Last checked at:
2026-09-20 00:05:19
Was present on blacklist at:
2026-09-09 00:05,
2026-09-10 00:05,
2026-09-11 00:05,
2026-09-12 00:05,
2026-09-13 00:05,
2026-09-14 00:05,
2026-09-15 00:05,
2026-09-16 00:05,
2026-09-17 00:05,
2026-09-18 00:05,
2026-09-19 00:05,
2026-09-20 00:05
UCEPROTECT L1
14.225.2.98 is listed on the UCEPROTECT L1 blacklist.
Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed:
primary (
feed detail page)
Last checked at:
2026-09-19 23:45:00.805000
Was present on blacklist at:
2026-09-14 15:45,
2026-09-14 23:45,
2026-09-15 15:45,
2026-09-15 23:45,
2026-09-16 07:45,
2026-09-16 15:45,
2026-09-16 23:45,
2026-09-17 07:45,
2026-09-17 15:45,
2026-09-17 23:45,
2026-09-18 07:45,
2026-09-18 15:45,
2026-09-18 23:45,
2026-09-19 07:45,
2026-09-19 15:45,
2026-09-19 23:45
Threat categories
| TL | Role | Category | Details |
| 42 |
src |
— |
|
| 25 |
src |
login |
port: 25, 465, 587
|
- Warden events (1)
- 2026-09-08
-
-
AttemptLogin (node.ce2b59): 1
- Residential proxy info (data provided by Layer3 Intel)
- Last seen: 2026-09-08 01:35:26}
- Percent days seen: 6 %
- Networks: AKE.NET
- Details: https://layer3intel.com/context/14.225.2.98
- Origin AS
- AS135905 - VNPT-AS-VN
- BGP Prefix
- 14.225.2.0/24
- geo
-
Vietnam, Can Tho
- 🕑 Asia/Ho_Chi_Minh
- hostname
- static.vnpt.vn
- hostname_class
- ['static']
- Address block ('inetnum' or 'NetRange' in whois database)
- 14.224.0.0 - 14.255.255.255
- last_activity
- 2026-09-07 22:50:57
- last_warden_event
- 2026-09-07 22:50:57
- rep
- 0.2931573963671382
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 80
- Tags: –
- CPEs: cpe:/a:microsoft:internet_information_services:10.0, cpe:/o:microsoft:windows
- ts_added
- 2026-09-08 00:20:27.076000
- ts_last_update
- 2026-09-20 00:20:31.340000
Warden event timeline
DShield event timeline
Presence on blacklists