IP address


.000206.189.19.152
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus XBL CBL
206.189.19.152 was recently listed on the Spamhaus XBL CBL blacklist, but currently it is not.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-04-28 20:38:00.140000
Was present on blacklist at: 2025-02-24 20:38, 2025-03-03 20:38
Warden events (59)
2025-03-25
ReconScanning (node.9c1411): 3
2025-03-16
ReconScanning (node.9c1411): 5
2025-02-18
ReconScanning (node.4dc198): 12
2025-02-17
ReconScanning (node.4dc198): 39
DShield reports (IP summary, reports)
2025-02-17
Number of reports: 84
Distinct targets: 27
2025-02-18
Number of reports: 16
Distinct targets: 4
OTX pulses
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name:david3
Pulse modified:2025-03-19 23:55:18.651000
Indicator created:2025-02-18 01:10:13
Indicator role:scanning_host
Indicator title:404 NOT FOUND
Indicator expiration:2025-05-19 00:00:00
Origin AS
AS14061 - DIGITALOCEAN-ASN
BGP Prefix
206.189.16.0/20
geo
United Kingdom, Slough
🕑 Europe/London
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
206.189.0.0 - 206.189.255.255
last_activity
2025-03-25 04:42:08
last_warden_event
2025-03-25 04:42:08
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 25, 104, 110, 111, 113, 122, 135, 143, 340, 513, 515, 541, 1023, 1024, 1026, 1311, 1433, 1515, 1521, 1800, 1926, 2002, 2008, 2020, 2209, 2222, 2323, 2345, 2404, 2435, 3001, 3126, 3132, 3134, 3301, 3310, 3342, 3345, 3400, 3412, 3521, 3542, 4040, 4321, 4438, 4443, 4506, 4531, 5000, 5005, 5010, 5025, 5100, 5105, 5226, 5240, 5440, 5609, 5804, 5822, 5900, 5901, 5918, 6002, 6005, 6308, 6331, 6633, 7018, 7022, 7100, 7218, 7331, 7415, 7441, 8000, 8003, 8007, 8011, 8018, 8019, 8040, 8080, 8123, 8126, 8139, 8142, 8200, 8239, 8333, 8334, 8343, 8445, 8506, 8545, 8643, 8701, 8708, 8808, 8811, 8817, 8825, 8910, 8943, 9000, 9002, 9006, 9022, 9030, 9043, 9107, 9114, 9119, 9120, 9127, 9134, 9145, 9200, 9208, 9211, 9226, 9443, 9513, 9633, 9930, 9943, 9944, 10000, 10001, 10011, 10019, 10034, 10035, 10134, 10243, 10324, 11112, 11434, 30303
Tags: cloud
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:9.6p1
ts_added
2025-02-17 20:37:51.562000
ts_last_update
2025-05-03 20:38:00.497000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses