IP address


.271176.65.148.219
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
176.65.148.219 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-04-28 02:50:01.132000
Was present on blacklist at: 2025-04-22 02:50, 2025-04-23 02:50, 2025-04-24 02:50, 2025-04-25 02:50, 2025-04-26 02:50, 2025-04-27 02:50, 2025-04-28 02:50
AbuseIPDB
176.65.148.219 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-04-25 04:00:00.717000
Was present on blacklist at: 2025-04-22 04:00, 2025-04-23 04:00, 2025-04-24 04:00, 2025-04-25 04:00
ThreatFox
176.65.148.219 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-27 14:10:00.135000
Was present on blacklist at: 2025-04-25 18:10, 2025-04-25 22:10, 2025-04-26 02:10, 2025-04-26 06:10, 2025-04-26 10:10, 2025-04-26 14:10, 2025-04-26 18:10, 2025-04-26 22:10, 2025-04-27 02:10, 2025-04-27 06:10, 2025-04-27 10:10, 2025-04-27 14:10
Warden events (1484)
2025-04-24
ReconScanning (node.4dc198): 72
ReconScanning (node.368407): 72
2025-04-23
ReconScanning (node.368407): 278
ReconScanning (node.4dc198): 278
2025-04-22
ReconScanning (node.368407): 285
ReconScanning (node.4dc198): 285
2025-04-21
ReconScanning (node.4dc198): 107
ReconScanning (node.368407): 107
DShield reports (IP summary, reports)
2025-04-21
Number of reports: 617
Distinct targets: 338
2025-04-22
Number of reports: 1207
Distinct targets: 349
2025-04-23
Number of reports: 1827
Distinct targets: 347
2025-04-24
Number of reports: 498
Distinct targets: 235
Origin AS
AS51396 - PFCLOUD
BGP Prefix
176.65.148.0/24
geo
Germany
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
176.65.128.0 - 176.65.159.255
last_activity
2025-04-24 05:59:27
last_warden_event
2025-04-24 05:59:27
rep
0.2714285714285714
reserved_range
0
ts_added
2025-04-21 15:02:19.335000
ts_last_update
2025-04-28 02:58:34.866000

Warden event timeline

DShield event timeline

Presence on blacklists