IP address


.000167.71.53.169
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
AbuseIPDB
167.71.53.169 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-03-12 05:00:00.516000
Was present on blacklist at: 2025-03-12 05:00
Spamhaus XBL CBL
167.71.53.169 was recently listed on the Spamhaus XBL CBL blacklist, but currently it is not.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-04-29 17:56:00.175000
Was present on blacklist at: 2025-03-18 17:56
Warden events (28)
2025-03-11
ReconScanning (node.4dc198): 25
ReconScanning (node.9c1411): 3
DShield reports (IP summary, reports)
2025-03-11
Number of reports: 58
Distinct targets: 23
OTX pulses
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name:david3
Pulse modified:2025-04-10 15:55:22.865000
Indicator created:2025-03-11 19:45:21
Indicator role:scanning_host
Indicator title:404 NOT FOUND
Indicator expiration:2025-06-09 00:00:00
Origin AS
AS14061 - DIGITALOCEAN-ASN
BGP Prefix
167.71.48.0/20
geo
Germany, Frankfurt am Main
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
167.71.0.0 - 167.71.255.255
last_activity
2025-04-10 16:00:57.741000
last_warden_event
2025-03-11 19:53:01
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 23, 25, 26, 79, 80, 88, 102, 104, 110, 111, 113, 122, 131, 135, 221, 243, 427, 443, 444, 447, 502, 503, 515, 541, 631, 636, 888, 902, 943, 1026, 1027, 1111, 1200, 1207, 1224, 1234, 1245, 1311, 1337, 1400, 1433, 1443, 1521, 1604, 1700, 1723, 1741, 1800, 1922, 2001, 2002, 2121, 2222, 2225, 2323, 2332, 2345, 2404, 2435, 2444, 2628, 3001, 3002, 3109, 3115, 3119, 3128, 3132, 3135, 3142, 3301, 3310, 3401, 3410, 3530, 3541, 3910, 4000, 4010, 4022, 4242, 4400, 4432, 4433, 4434, 4444, 4505, 4808, 5000, 5006, 5009, 5025, 5201, 5224, 5231, 5240, 5244, 5435, 5443, 5601, 5607, 5609, 5614, 5800, 5801, 5900, 5901, 5918, 5938, 6001, 6003, 6004, 6308, 6443, 6513, 6605, 7001, 7003, 7100, 7415, 7434, 7443, 7500, 7547, 7634, 8000, 8001, 8009, 8010, 8013, 8016, 8029, 8037, 8040, 8047, 8080, 8109, 8112, 8123, 8126, 8132, 8139, 8200, 8300, 8333, 8409, 8425, 8442, 8536, 8545, 8607, 8800, 8808, 8812, 8824, 8834, 8835, 8838, 8901, 9002, 9028, 9030, 9032, 9035, 9042, 9100, 9137, 9200, 9207, 9220, 9306, 9418, 9443, 9501, 9600, 9633, 9743, 9922, 9943, 9999, 10001, 10008, 10012, 10020, 10024, 10443, 10909, 10911, 11000, 11111, 11112, 11211, 11300, 11434, 45000
Tags: cloud
CPEs: cpe:/a:openbsd:openssh:8.2p1, cpe:/o:canonical:ubuntu_linux, cpe:/a:f5:nginx
ts_added
2025-03-11 17:55:55.434000
ts_last_update
2025-05-03 17:56:00.154000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses