IP address


.179154.59.103.20scan-20.tttx.net
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
154.59.103.20 was recently listed on the CI Army blacklist, but currently it is not.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-09-17 02:50:00.770000
Was present on blacklist at: 2026-09-17 02:50
UCEPROTECT L1
154.59.103.20 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-10-02 15:45:00.643000
Was present on blacklist at: 2026-09-28 23:45, 2026-09-29 07:45, 2026-09-29 15:45, 2026-09-29 23:45, 2026-09-30 07:45, 2026-09-30 15:45, 2026-09-30 23:45, 2026-10-01 07:45, 2026-10-01 15:45, 2026-10-01 23:45, 2026-10-02 07:45, 2026-10-02 15:45

Threat categories

TLRoleCategoryDetails
40 src login protocol: ftp
port: 21
39 src —

Warden events (14)
2026-10-01
IntrusionUserCompromise (node.cfb4f7): 4
2026-09-30
IntrusionUserCompromise (node.cfb4f7): 2
2026-09-28
IntrusionUserCompromise (node.cfb4f7): 1
2026-09-27
IntrusionUserCompromise (node.cfb4f7): 6
2026-09-14
ReconScanning (node.86eb21): 1
DShield reports (IP summary, reports)
2026-09-16
Number of reports: 280
Distinct targets: 220
Origin AS
AS174 - COGENT-174
BGP Prefix
154.59.103.0/24
geo
United States, Los Angeles
🕑 America/Los_Angeles
hostname
scan-20.tttx.net
Address block ('inetnum' or 'NetRange' in whois database)
154.59.0.0 - 154.59.255.255
last_activity
2026-10-01 05:48:04
last_warden_event
2026-10-01 05:48:04
rep
0.17888470127461953
reserved_range
0
ts_added
2026-09-14 17:15:49.154000
ts_last_update
2026-10-02 17:15:50.122000

Warden event timeline

DShield event timeline

Presence on blacklists