IP address


.03539.164.85.17
Shodan(more info)
Passive DNS
Tags:
IP blacklists
DataPlane SSH login
39.164.85.17 is listed on the DataPlane SSH login blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs trying<br>an unsolicited login to a host using SSH password authentication.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-03 15:10:01.617000
Was present on blacklist at: 2025-11-26 15:10, 2025-11-26 19:10, 2025-11-27 03:10, 2025-11-27 07:10, 2025-11-27 15:10, 2025-11-27 19:10, 2025-11-28 03:10, 2025-11-28 07:10, 2025-11-28 15:10, 2025-11-28 19:10, 2025-11-29 03:10, 2025-11-29 07:10, 2025-11-29 15:10, 2025-11-29 19:10, 2025-11-30 03:10, 2025-11-30 07:10, 2025-11-30 15:10, 2025-11-30 19:10, 2025-12-01 03:10, 2025-12-01 07:10, 2025-12-01 15:10, 2025-12-01 19:10, 2025-12-02 03:10, 2025-12-02 07:10, 2025-12-02 15:10, 2025-12-02 19:10, 2025-12-03 03:10, 2025-12-03 07:10, 2025-12-03 15:10
AbuseIPDB
39.164.85.17 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-12-16 05:00:00.711000
Was present on blacklist at: 2025-11-27 05:00, 2025-11-28 05:00, 2025-11-29 05:00, 2025-11-30 05:00, 2025-12-01 05:00, 2025-12-02 05:00, 2025-12-03 05:00, 2025-12-04 05:00, 2025-12-05 05:00, 2025-12-06 05:00, 2025-12-07 05:00, 2025-12-08 05:00, 2025-12-09 05:00, 2025-12-10 05:00, 2025-12-12 05:00, 2025-12-13 05:00, 2025-12-14 05:00, 2025-12-15 05:00, 2025-12-16 05:00
Warden events (3)
2025-12-10
AttemptLogin (node.00aee5): 1
2025-12-05
AttemptLogin (node.ee25b8): 1
AttemptLogin (node.70e749): 1
DShield reports (IP summary, reports)
2025-11-26
Number of reports: 22
Distinct targets: 14
2025-11-27
Number of reports: 42
Distinct targets: 21
2025-11-28
Number of reports: 25
Distinct targets: 20
2025-11-29
Number of reports: 25
Distinct targets: 20
2025-11-30
Number of reports: 34
Distinct targets: 23
2025-12-01
Number of reports: 33
Distinct targets: 21
2025-12-02
Number of reports: 33
Distinct targets: 21
2025-12-03
Number of reports: 38
Distinct targets: 25
2025-12-04
Number of reports: 40
Distinct targets: 27
2025-12-05
Number of reports: 16
Distinct targets: 12
2025-12-06
Number of reports: 18
Distinct targets: 10
2025-12-07
Number of reports: 18
Distinct targets: 10
2025-12-08
Number of reports: 44
Distinct targets: 30
2025-12-09
Number of reports: 27
Distinct targets: 22
2025-12-10
Number of reports: 19
Distinct targets: 16
2025-12-11
Number of reports: 27
Distinct targets: 15
2025-12-12
Number of reports: 27
Distinct targets: 15
2025-12-13
Number of reports: 27
Distinct targets: 17
2025-12-14
Number of reports: 30
Distinct targets: 19
2025-12-15
Number of reports: 13
Distinct targets: 6
Origin AS
AS24445 - CMNET-V4henan-AS-AP
BGP Prefix
39.164.85.0/24
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
39.128.0.0 - 39.191.255.255
last_activity
2025-12-10 03:55:23.345000
last_warden_event
2025-12-10 03:55:23.345000
rep
0.03511904761904761
reserved_range
0
ts_added
2025-11-26 15:18:33.004000
ts_last_update
2025-12-16 15:18:40.617000

Warden event timeline

DShield event timeline

Presence on blacklists