IP address


--191.96.117.139
Shodan(more info)
Passive DNS
Tags:
IP blacklists
FireHOL anonymizers
191.96.117.139 was recently listed on the FireHOL anonymizers blacklist, but currently it is not.

Description: List of anonymizing IPs, aggregated from multiple lists by FireHOL.
Type of feed: secondary (feed detail page)

Last checked at: 2025-12-16 12:05:09
Was present on blacklist at: 2025-10-09 18:05, 2025-10-10 18:05, 2025-10-11 18:05, 2025-10-12 18:05, 2025-10-13 18:05, 2025-10-14 18:05, 2025-10-15 18:05, 2025-10-16 18:05, 2025-10-17 18:05, 2025-10-18 18:05, 2025-10-19 18:05, 2025-10-20 18:05, 2025-10-21 18:05, 2025-10-22 18:05, 2025-10-23 18:05, 2025-10-24 18:05, 2025-10-25 18:05, 2025-10-26 12:05, 2025-10-27 12:05, 2025-10-28 12:05, 2025-10-29 12:05, 2025-10-30 12:05, 2025-10-31 12:05, 2025-11-01 12:05, 2025-11-02 12:05, 2025-11-03 12:05, 2025-11-04 12:05, 2025-11-05 12:05, 2025-11-06 12:05, 2025-11-07 12:05, 2025-11-08 12:05, 2025-11-09 12:05, 2025-11-10 12:05, 2025-11-11 12:05, 2025-11-12 12:05, 2025-11-13 12:05, 2025-11-14 12:05, 2025-11-15 12:05, 2025-11-16 12:05, 2025-11-17 12:05, 2025-11-18 12:05, 2025-11-19 12:05, 2025-11-20 12:05, 2025-11-21 12:05, 2025-11-22 12:05, 2025-11-23 12:05, 2025-11-24 12:05, 2025-11-25 12:05, 2025-11-26 12:05, 2025-11-27 12:05, 2025-11-28 12:05, 2025-11-29 12:05, 2025-11-30 12:05, 2025-12-01 12:05, 2025-12-02 12:05, 2025-12-03 12:05, 2025-12-04 12:05, 2025-12-05 12:05, 2025-12-06 12:05, 2025-12-07 12:05, 2025-12-08 12:05, 2025-12-09 12:05
Spamhaus XBL CBL
191.96.117.139 was recently listed on the Spamhaus XBL CBL blacklist, but currently it is not.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-12-16 16:12:40.232000
Was present on blacklist at: 2025-11-04 16:12
OTX pulses
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name:david3
Pulse modified:2025-10-16 11:55:21.989000
Indicator created:2025-09-16 13:35:35
Indicator role:scanning_host
Indicator title:404 NOT FOUND
Indicator expiration:2025-12-15 00:00:00
Origin AS
AS395954 - LEASEWEB-USA-LAX-11
BGP Prefix
191.96.117.0/24
geo
United States, Los Angeles
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
191.96.0.0 - 191.96.255.255
last_activity
2025-10-16 12:00:31.355000
reserved_range
0
ts_added
2025-09-16 16:12:34.017000
ts_last_update
2025-12-16 16:12:40.266000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses