IP address


.293169.239.130.20
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Echelon SSH bruteforce
169.239.130.20 is listed on the Echelon SSH bruteforce blacklist.

Description: IPs detected by Echelon sensors (honeypots) as performing this activity: Multiple SSH authentication attempts detected
Type of feed: primary (feed detail page)

Last checked at: 2026-09-18 09:35:00.360000
Was present on blacklist at: 2026-09-17 09:35, 2026-09-18 09:35
Echelon SSH connection attempt
169.239.130.20 is listed on the Echelon SSH connection attempt blacklist.

Description: IPs detected by Echelon sensors (honeypots) as performing this activity: SSH connection attempt detected on port 22 or 2222
Type of feed: primary (feed detail page)

Last checked at: 2026-09-18 09:35:00.536000
Was present on blacklist at: 2026-09-17 09:35, 2026-09-18 09:35

Threat categories

TLRoleCategoryDetails
38 src login protocol: ssh
port: 22, 2222

MISP events
[7906] 2026-06-07 00:00:00 | ThreatFox IOCs for 2026-06-07
Reporting org.:abuse.ch
TLP:white
Tags: type:OSINT
Sightings:positive: 0 | false positive: 0 | expired attribute: 0
Last change:2026-06-08 00:03:07
Threat level:Medium
Role of this IP:dst
Origin AS
AS49870 - AS49870-BV
BGP Prefix
169.239.130.0/24
geo
Netherlands, Amsterdam
🕑 Europe/Amsterdam
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
169.239.128.0 - 169.239.131.255
last_activity
2026-06-07 00:00:00
rep
0.2928932188134524
reserved_range
0
ts_added
2026-08-28 08:37:09.548000
ts_last_update
2026-09-19 08:37:11.136000

Warden event timeline

DShield event timeline

Presence on blacklists