IP address


.033161.35.72.93
Shodan(more info)
Passive DNS
Tags:
IP blacklists
blocklist.de Apache
161.35.72.93 is listed on the blocklist.de Apache blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing attacks on the service<br>Apache, Apache-DDOS, RFI-Attacks.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-13 17:05:05.278000
Was present on blacklist at: 2025-12-11 23:05, 2025-12-12 05:05, 2025-12-12 11:05, 2025-12-12 17:05, 2025-12-12 23:05, 2025-12-13 05:05, 2025-12-13 11:05, 2025-12-13 17:05
Spamhaus SBL CSS
161.35.72.93 was recently listed on the Spamhaus SBL CSS blacklist, but currently it is not.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-12-18 23:06:22.175000
Was present on blacklist at: 2025-12-11 23:06
Warden events (3)
2025-12-12
ReconScanning (node.4dc198): 1
2025-12-11
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
Origin AS
AS14061 - DIGITALOCEAN-ASN
BGP Prefix
161.35.64.0/20
geo
Germany, Frankfurt am Main
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
161.35.0.0 - 161.35.255.255
last_activity
2025-12-12 00:11:02
last_warden_event
2025-12-12 00:11:02
rep
0.03333333333333333
reserved_range
0
Shodan's InternetDB
Open ports: 22
Tags: cloud
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:10.0p2
ts_added
2025-12-11 23:06:19.124000
ts_last_update
2025-12-21 23:06:21.595000

Warden event timeline

DShield event timeline

Presence on blacklists