IP address


--172.104.210.213172-104-210-213.ip.linodeusercontent.com
Shodan(more info)
Passive DNS
Tags: IP in hostname
IP blacklists
DataPlane SMTP greeting
172.104.210.213 is listed on the DataPlane SMTP greeting blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs that are<br>identified as SMTP clients issuing unsolicited HELO or EHLO commands.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-23 18:10:01.276000
Was present on blacklist at: 2025-04-16 22:10, 2025-04-17 02:10, 2025-04-17 06:10, 2025-04-17 10:10, 2025-04-17 14:10, 2025-04-17 18:10, 2025-04-17 22:10, 2025-04-18 02:10, 2025-04-18 06:10, 2025-04-18 10:10, 2025-04-18 14:10, 2025-04-18 18:10, 2025-04-18 22:10, 2025-04-19 02:10, 2025-04-19 06:10, 2025-04-19 10:10, 2025-04-19 14:10, 2025-04-19 18:10, 2025-04-19 22:10, 2025-04-20 02:10, 2025-04-20 06:10, 2025-04-20 10:10, 2025-04-20 14:10, 2025-04-20 18:10, 2025-04-20 22:10, 2025-04-21 02:10, 2025-04-21 06:10, 2025-04-21 10:10, 2025-04-21 14:10, 2025-04-21 18:10, 2025-04-21 22:10, 2025-04-22 02:10, 2025-04-22 06:10, 2025-04-22 10:10, 2025-04-22 14:10, 2025-04-22 18:10, 2025-04-22 22:10, 2025-04-23 02:10, 2025-04-23 06:10, 2025-04-23 10:10, 2025-04-23 14:10, 2025-04-23 18:10
Spamhaus SBL CSS
172.104.210.213 was recently listed on the Spamhaus SBL CSS blacklist, but currently it is not.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-04-23 22:13:20.293000
Was present on blacklist at: 2025-04-16 22:13
DShield reports (IP summary, reports)
2025-04-16
Number of reports: 43
Distinct targets: 25
Origin AS
AS63949 - LINODE-AP
BGP Prefix
172.104.208.0/20
geo
United States, Cedar Knolls
🕑 America/New_York
hostname
172-104-210-213.ip.linodeusercontent.com
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
172.104.0.0 - 172.105.255.255
reserved_range
0
Shodan's InternetDB
Open ports: 80, 443, 10001, 10021, 10046, 10243, 10444, 10911, 11000, 11084, 11210, 11288, 11481, 11701, 12152, 12182, 12265, 12305, 12324, 12333, 12338, 12365, 12370, 12412, 12422, 12446, 12453, 12481, 12503, 12504, 12507, 12515, 12523, 12528, 12580, 12587, 13000, 13443, 13579, 14084, 14344, 14443, 14894, 15000, 15503, 15831, 16003, 16030, 16046, 16088, 16316, 16667, 16992, 16993, 17000, 17182, 18021, 18062, 18081, 18088, 18090, 18093, 18094, 18888, 20000, 20087, 20547, 21025, 21243, 21285, 21296, 21297, 21313, 21357, 22222, 22403, 23023, 23084, 23424, 25001, 25105, 25565, 25782, 27015, 27017, 27036, 28015, 28017, 30718, 32400, 32764, 33060, 35000, 35101, 35531, 37215, 37777, 41794, 44818, 45777, 47808, 48001, 48899, 49153, 50000, 50050, 50070, 50805, 51106, 51235, 53413, 54138, 54984, 55443, 55553
Tags: cloud
CPEs: cpe:/a:apache:http_server:2.4.41
ts_added
2025-04-16 22:13:10.143000
ts_last_update
2025-04-27 22:13:21.204000

Warden event timeline

DShield event timeline

Presence on blacklists