IP address


.000178.47.34.62mail.uk-ter.ru
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
UCEPROTECT L1
178.47.34.62 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-23 07:45:00.987000
Was present on blacklist at: 2025-04-16 15:45, 2025-04-16 23:45, 2025-04-17 07:45, 2025-04-17 15:45, 2025-04-17 23:45, 2025-04-18 07:45, 2025-04-18 15:45, 2025-04-18 23:45, 2025-04-19 07:45, 2025-04-19 15:45, 2025-04-19 23:45, 2025-04-20 07:45, 2025-04-20 15:45, 2025-04-20 23:45, 2025-04-21 07:45, 2025-04-21 15:45, 2025-04-21 23:45, 2025-04-22 07:45, 2025-04-22 15:45, 2025-04-22 23:45, 2025-04-23 07:45
Spamhaus SBL CSS
178.47.34.62 was recently listed on the Spamhaus SBL CSS blacklist, but currently it is not.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-05-01 07:20:30.294000
Was present on blacklist at: 2025-04-17 07:20, 2025-04-24 07:20
Spamhaus XBL CBL
178.47.34.62 was recently listed on the Spamhaus XBL CBL blacklist, but currently it is not.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-05-01 07:20:30.294000
Was present on blacklist at: 2025-04-17 07:20
Warden events (50)
2025-04-16
ReconScanning (node.9c1411): 2
2025-04-14
ReconScanning (node.9c1411): 1
2025-04-09
ReconScanning (node.9c1411): 1
2025-04-04
ReconScanning (node.9c1411): 3
2025-04-03
ReconScanning (node.368407): 1
2025-03-21
ReconScanning (node.9c1411): 3
2025-03-20
ReconScanning (node.9c1411): 10
2025-03-19
ReconScanning (node.9c1411): 24
2025-03-16
ReconScanning (node.9c1411): 4
2025-03-13
ReconScanning (node.9c1411): 1
DShield reports (IP summary, reports)
2025-03-22
Number of reports: 10
Distinct targets: 5
2025-03-26
Number of reports: 10
Distinct targets: 6
2025-04-01
Number of reports: 31
Distinct targets: 6
2025-04-21
Number of reports: 11
Distinct targets: 5
Origin AS
AS12389 - ROSTELECOM-AS
BGP Prefix
178.47.32.0/20
geo
Russia, Surgut
🕑 Asia/Yekaterinburg
hostname
mail.uk-ter.ru
Address block ('inetnum' or 'NetRange' in whois database)
178.46.0.0 - 178.47.255.255
last_activity
2025-04-16 05:52:35
last_warden_event
2025-04-16 05:52:35
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 53, 443, 587, 6881
Tags: starttls, self-signed
CPEs: cpe:/a:jquery:jquery, cpe:/a:php:php, cpe:/a:roundcube:webmail, cpe:/a:getbootstrap:bootstrap, cpe:/a:jquery:jquery_ui, cpe:/a:f5:nginx, cpe:/a:postfix:postfix
ts_added
2025-03-13 07:20:21.038000
ts_last_update
2025-05-07 07:20:30.295000

Warden event timeline

DShield event timeline

Presence on blacklists