IP address


.066142.93.230.253
Shodan(more info)
Passive DNS
Tags:
IP blacklists
blocklist.de SSH
142.93.230.253 is listed on the blocklist.de SSH blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing SSH attacks.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-15 17:05:00.328000
Was present on blacklist at: 2025-12-02 17:05, 2025-12-02 23:05, 2025-12-03 05:05, 2025-12-03 11:05, 2025-12-03 17:05, 2025-12-03 23:05, 2025-12-04 05:05, 2025-12-04 11:05, 2025-12-15 17:05
DataPlane SSH login
142.93.230.253 is listed on the DataPlane SSH login blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs trying<br>an unsolicited login to a host using SSH password authentication.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-21 19:10:01.592000
Was present on blacklist at: 2025-12-02 19:10, 2025-12-03 03:10, 2025-12-03 07:10, 2025-12-03 15:10, 2025-12-03 19:10, 2025-12-04 03:10, 2025-12-04 07:10, 2025-12-04 15:10, 2025-12-04 19:10, 2025-12-05 03:10, 2025-12-05 07:10, 2025-12-05 15:10, 2025-12-05 19:10, 2025-12-06 03:10, 2025-12-06 07:10, 2025-12-06 15:10, 2025-12-06 19:10, 2025-12-07 03:10, 2025-12-07 07:10, 2025-12-07 15:10, 2025-12-07 19:10, 2025-12-08 03:10, 2025-12-08 07:10, 2025-12-08 15:10, 2025-12-08 19:10, 2025-12-09 03:10, 2025-12-09 07:10, 2025-12-09 15:10, 2025-12-15 19:10, 2025-12-16 03:10, 2025-12-16 07:10, 2025-12-16 15:10, 2025-12-16 19:10, 2025-12-17 03:10, 2025-12-17 07:10, 2025-12-17 15:10, 2025-12-17 19:10, 2025-12-18 03:10, 2025-12-18 07:10, 2025-12-18 15:10, 2025-12-18 19:10, 2025-12-19 03:10, 2025-12-19 07:10, 2025-12-19 15:10, 2025-12-19 19:10, 2025-12-20 03:10, 2025-12-20 07:10, 2025-12-20 15:10, 2025-12-20 19:10, 2025-12-21 03:10, 2025-12-21 07:10, 2025-12-21 15:10, 2025-12-21 19:10
blocklist.de web-login
142.93.230.253 is listed on the blocklist.de web-login blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs that attacks Joomla, Wordpress and<br>other Web-Logins with Brute-Force Logins.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-17 23:05:00.368000
Was present on blacklist at: 2025-12-15 23:05, 2025-12-16 05:05, 2025-12-16 11:05, 2025-12-16 17:05, 2025-12-16 23:05, 2025-12-17 05:05, 2025-12-17 11:05, 2025-12-17 17:05, 2025-12-17 23:05
blocklist.de Apache
142.93.230.253 is listed on the blocklist.de Apache blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing attacks on the service<br>Apache, Apache-DDOS, RFI-Attacks.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-17 23:05:05.270000
Was present on blacklist at: 2025-12-15 23:05, 2025-12-16 05:05, 2025-12-16 11:05, 2025-12-16 17:05, 2025-12-16 23:05, 2025-12-17 05:05, 2025-12-17 11:05, 2025-12-17 17:05, 2025-12-17 23:05
UCEPROTECT L1
142.93.230.253 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-21 16:45:00.532000
Was present on blacklist at: 2025-12-16 00:45, 2025-12-16 08:45, 2025-12-16 16:45, 2025-12-17 00:45, 2025-12-17 08:45, 2025-12-17 16:45, 2025-12-18 00:45, 2025-12-18 08:45, 2025-12-18 16:45, 2025-12-19 00:45, 2025-12-19 08:45, 2025-12-19 16:45, 2025-12-20 00:45, 2025-12-20 08:45, 2025-12-20 16:45, 2025-12-21 00:45, 2025-12-21 08:45, 2025-12-21 16:45
Warden events (7)
2025-12-15
ReconScanning (node.4dc198): 3
ReconScanning (node.368407): 2
AnomalyTraffic (node.ffe95c): 2
DShield reports (IP summary, reports)
2025-12-03
Number of reports: 13
Distinct targets: 3
2025-12-15
Number of reports: 276
Distinct targets: 9
Origin AS
AS14061 - DIGITALOCEAN-ASN
BGP Prefix
142.93.224.0/20
geo
Netherlands, Amsterdam
🕑 Europe/Amsterdam
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
142.93.0.0 - 142.93.255.255
last_activity
2025-12-15 17:08:18
last_warden_event
2025-12-15 17:08:18
rep
0.06614583333333333
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 79, 88, 110, 111, 135, 143, 340, 443, 444, 503, 631, 636, 700, 808, 843, 1025, 1111, 1234, 1311, 1400, 1433, 1515, 1723, 1741, 1800, 1801, 1925, 2003, 2008, 2133, 2323, 2404, 3100, 3108, 3121, 3134, 3140, 3301, 3311, 3333, 3542, 4022, 4040, 4103, 4242, 4321, 4433, 4434, 4443, 4502, 4506, 4543, 4911, 5025, 5123, 5140, 5222, 5237, 5239, 5242, 5246, 5435, 5440, 5800, 6000, 6001, 6432, 6443, 7001, 7014, 7020, 7218, 7444, 7603, 7634, 7900, 8000, 8008, 8009, 8035, 8080, 8111, 8141, 8200, 8322, 8334, 8418, 8423, 8436, 8446, 8503, 8505, 8525, 8545, 8800, 8817, 8834, 8910, 9000, 9014, 9017, 9031, 9121, 9205, 9226, 9230, 9306, 9313, 9333, 9443, 9529, 9600, 9810, 9930, 9943, 10011, 10943, 11000, 11101, 11110, 11210, 11434
Tags: cloud
CPEs: cpe:/a:openbsd:openssh:8.2p1, cpe:/o:canonical:ubuntu_linux, cpe:/a:cloudflare:cloudflare
ts_added
2025-12-02 17:06:46.321000
ts_last_update
2025-12-21 19:15:41.619000

Warden event timeline

DShield event timeline

Presence on blacklists