IP address


.406151.240.52.111
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
151.240.52.111 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-07-24 02:50:00.819000
Was present on blacklist at: 2026-07-22 02:50, 2026-07-23 02:50, 2026-07-24 02:50
Spamhaus XBL CBL
151.240.52.111 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-08-05 02:52:21.666000
Was present on blacklist at: 2026-07-22 02:52, 2026-08-05 02:52
Spamhaus SBL CSS
151.240.52.111 is listed on the Spamhaus SBL CSS blacklist.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-08-05 02:52:21.666000
Was present on blacklist at: 2026-08-05 02:52
SpamCop
151.240.52.111 is listed on the SpamCop blacklist.

Description: The SpamCop Blocking List (SCBL) lists IP addresses which have transmitted reported email to SpamCop users.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-08-05 02:52:21.666000
Was present on blacklist at: 2026-08-05 02:52

Threat categories

TLRoleCategoryDetails
38 src scan port: many
25 src

Warden events (6)
2026-07-24
ReconScanning (node.9c1411): 2
2026-07-22
ReconScanning (node.ce2b59): 2
AnomalyTraffic (node.6a1878): 2
DShield reports (IP summary, reports)
2026-07-23
Number of reports: 111
Distinct targets: 94
Origin AS
AS137409 - GSLNETWORKS-AS-AP
BGP Prefix
151.240.52.0/24
geo
United States, Fargo
🕑 America/Chicago
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
151.240.0.0 - 151.240.127.255
last_activity
2026-07-24 00:17:56
last_warden_event
2026-07-24 00:17:56
rep
0.4056111502314035
reserved_range
0
ts_added
2026-07-22 02:52:10.691000
ts_last_update
2026-08-06 02:52:21.676000

Warden event timeline

DShield event timeline

Presence on blacklists