IP address


.089185.125.102.208horrible-oven.ptr.network
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
AbuseIPDB
185.125.102.208 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-10-01 04:00:00.710000
Was present on blacklist at: 2025-10-01 04:00
Warden events (1018)
2025-10-07
ReconScanning (node.368407): 39
AnomalyTraffic (node.86dac8): 6
ReconScanning (node.9c1411): 1
2025-10-03
ReconScanning (node.9c1411): 6
2025-10-02
ReconScanning (node.9c1411): 65
2025-10-01
ReconScanning (node.f90c6b): 663
ReconScanning (node.9c1411): 6
2025-09-30
ReconScanning (node.368407): 2
ReconScanning (node.f90c6b): 230
DShield reports (IP summary, reports)
2025-10-07
Number of reports: 72
Distinct targets: 13
2025-10-08
Number of reports: 72
Distinct targets: 13
Origin AS
AS210644 - aeza
BGP Prefix
185.125.102.0/24
geo
Germany, Frankfurt am Main
🕑 Europe/Berlin
hostname
horrible-oven.ptr.network
Address block ('inetnum' or 'NetRange' in whois database)
185.125.100.0 - 185.125.103.255
last_activity
2025-10-07 14:35:14
last_warden_event
2025-10-07 14:35:14
rep
0.0890625
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 81, 443, 3000, 3001, 5672, 6380, 7777, 7778, 9090, 15672, 15673
Tags:
CPEs: cpe:/a:nodejs:node.js, cpe:/a:f5:nginx, cpe:/a:expressjs:express, cpe:/a:vmware:rabbitmq:3.13.7, cpe:/a:jquery:jquery:3.5.1, cpe:/a:erlang:erlang%2fotp, cpe:/a:getbootstrap:bootstrap:3.4.1, cpe:/a:openresty:openresty, cpe:/a:openbsd:openssh:8.9p1, cpe:/o:canonical:ubuntu_linux, cpe:/a:getbootstrap:bootstrap
ts_added
2025-09-30 16:29:01.886000
ts_last_update
2025-10-14 16:29:10.288000

Warden event timeline

DShield event timeline

Presence on blacklists