IP address


.00046.29.238.176100195.ip-ptr.tech
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
46.29.238.176 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-05-04 02:50:01.123000
Was present on blacklist at: 2025-03-24 03:50, 2025-03-25 03:50, 2025-03-26 03:50, 2025-03-27 03:50, 2025-03-28 03:50, 2025-03-29 03:50, 2025-03-30 02:50, 2025-03-31 02:50, 2025-04-01 02:50, 2025-04-02 02:50, 2025-04-03 02:50, 2025-04-04 02:50, 2025-04-05 02:50, 2025-04-06 02:50, 2025-04-07 02:50, 2025-04-08 02:50, 2025-04-09 02:50, 2025-04-10 02:50, 2025-04-11 02:50, 2025-04-12 02:50, 2025-04-13 02:50, 2025-04-14 02:50, 2025-04-15 02:50, 2025-04-16 02:50, 2025-04-17 02:50, 2025-04-18 02:50, 2025-04-19 02:50, 2025-04-20 02:50, 2025-04-21 02:50, 2025-04-22 02:50, 2025-04-23 02:50, 2025-04-24 02:50, 2025-04-25 02:50, 2025-04-26 02:50, 2025-04-27 02:50, 2025-04-28 02:50, 2025-04-29 02:50, 2025-04-30 02:50, 2025-05-01 02:50, 2025-05-02 02:50, 2025-05-03 02:50, 2025-05-04 02:50
Spamhaus PBL
46.29.238.176 is listed on the Spamhaus PBL blacklist.

Description: The Spamhaus PBL is a DNSBL database of end-user IP address ranges which should not be delivering unauthenticated SMTP email to any Internet mail server except those provided for specifically by an ISP for that customer's use.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-06-20 03:52:40.472000
Was present on blacklist at: 2025-03-28 03:52, 2025-04-04 03:52, 2025-04-11 03:52, 2025-04-18 03:52, 2025-04-25 03:52, 2025-05-02 03:52, 2025-05-09 03:52, 2025-05-16 03:52, 2025-05-23 03:52, 2025-05-30 03:52, 2025-06-06 03:52, 2025-06-13 03:52, 2025-06-20 03:52
AbuseIPDB
46.29.238.176 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-04-29 04:00:00.675000
Was present on blacklist at: 2025-03-23 05:00, 2025-03-24 05:00, 2025-03-25 05:00, 2025-03-27 05:00, 2025-03-28 05:00, 2025-03-29 05:00, 2025-03-30 04:00, 2025-03-31 04:00, 2025-04-01 04:00, 2025-04-03 04:00, 2025-04-04 04:00, 2025-04-05 04:00, 2025-04-06 04:00, 2025-04-07 04:00, 2025-04-08 04:00, 2025-04-09 04:00, 2025-04-10 04:00, 2025-04-11 04:00, 2025-04-12 04:00, 2025-04-13 04:00, 2025-04-14 04:00, 2025-04-15 04:00, 2025-04-16 04:00, 2025-04-17 04:00, 2025-04-18 04:00, 2025-04-19 04:00, 2025-04-20 04:00, 2025-04-21 04:00, 2025-04-22 04:00, 2025-04-23 04:00, 2025-04-24 04:00, 2025-04-25 04:00, 2025-04-26 04:00, 2025-04-27 04:00, 2025-04-28 04:00, 2025-04-29 04:00
Turris greylist
46.29.238.176 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-24 21:15:00.214000
Was present on blacklist at: 2025-03-24 22:15, 2025-03-25 22:15, 2025-04-08 21:15, 2025-04-09 21:15, 2025-04-10 21:15, 2025-04-23 21:15, 2025-04-24 21:15
Warden events (1264)
2025-04-20
ReconScanning (node.9c1411): 44
2025-04-19
ReconScanning (node.9c1411): 52
2025-04-18
ReconScanning (node.9c1411): 48
2025-04-17
ReconScanning (node.9c1411): 58
2025-04-16
ReconScanning (node.9c1411): 47
2025-04-15
ReconScanning (node.9c1411): 45
2025-04-14
ReconScanning (node.9c1411): 46
2025-04-13
ReconScanning (node.9c1411): 44
2025-04-12
ReconScanning (node.9c1411): 40
2025-04-11
ReconScanning (node.9c1411): 37
2025-04-10
ReconScanning (node.9c1411): 39
2025-04-09
ReconScanning (node.9c1411): 32
2025-04-08
ReconScanning (node.9c1411): 39
2025-04-07
ReconScanning (node.9c1411): 37
2025-04-06
ReconScanning (node.9c1411): 33
2025-04-05
ReconScanning (node.9c1411): 43
2025-04-04
ReconScanning (node.9c1411): 34
2025-04-03
ReconScanning (node.9c1411): 46
2025-04-02
ReconScanning (node.9c1411): 32
2025-04-01
ReconScanning (node.9c1411): 36
2025-03-31
ReconScanning (node.9c1411): 36
2025-03-30
ReconScanning (node.9c1411): 39
2025-03-29
ReconScanning (node.9c1411): 37
2025-03-28
ReconScanning (node.9c1411): 74
2025-03-27
ReconScanning (node.9c1411): 77
2025-03-26
ReconScanning (node.9c1411): 65
2025-03-25
ReconScanning (node.9c1411): 43
2025-03-24
ReconScanning (node.9c1411): 26
2025-03-23
ReconScanning (node.9c1411): 35
DShield reports (IP summary, reports)
2025-03-23
Number of reports: 447
Distinct targets: 194
2025-03-24
Number of reports: 559
Distinct targets: 209
2025-03-25
Number of reports: 182
Distinct targets: 166
2025-03-26
Number of reports: 151
Distinct targets: 140
2025-03-27
Number of reports: 219
Distinct targets: 169
2025-03-28
Number of reports: 222
Distinct targets: 173
2025-03-29
Number of reports: 240
Distinct targets: 201
2025-03-30
Number of reports: 273
Distinct targets: 172
2025-03-31
Number of reports: 273
Distinct targets: 184
2025-04-01
Number of reports: 301
Distinct targets: 191
2025-04-02
Number of reports: 286
Distinct targets: 192
2025-04-03
Number of reports: 280
Distinct targets: 179
2025-04-04
Number of reports: 231
Distinct targets: 174
2025-04-05
Number of reports: 300
Distinct targets: 202
2025-04-06
Number of reports: 275
Distinct targets: 176
2025-04-07
Number of reports: 444
Distinct targets: 195
2025-04-08
Number of reports: 375
Distinct targets: 179
2025-04-09
Number of reports: 281
Distinct targets: 182
2025-04-10
Number of reports: 182
Distinct targets: 159
2025-04-11
Number of reports: 292
Distinct targets: 183
2025-04-12
Number of reports: 323
Distinct targets: 208
2025-04-13
Number of reports: 185
Distinct targets: 161
2025-04-14
Number of reports: 179
Distinct targets: 151
2025-04-15
Number of reports: 199
Distinct targets: 177
2025-04-16
Number of reports: 275
Distinct targets: 181
2025-04-17
Number of reports: 299
Distinct targets: 197
2025-04-18
Number of reports: 318
Distinct targets: 211
2025-04-19
Number of reports: 191
Distinct targets: 161
2025-04-20
Number of reports: 271
Distinct targets: 183
2025-04-21
Number of reports: 316
Distinct targets: 197
2025-04-22
Number of reports: 432
Distinct targets: 188
2025-04-23
Number of reports: 484
Distinct targets: 213
2025-04-24
Number of reports: 271
Distinct targets: 172
2025-04-25
Number of reports: 197
Distinct targets: 162
2025-04-26
Number of reports: 224
Distinct targets: 187
2025-04-27
Number of reports: 277
Distinct targets: 180
2025-04-28
Number of reports: 205
Distinct targets: 136
OTX pulses
[602bc528f447d628d41494f2] 2021-02-16 13:14:16.945000 | Ka's Honeypot visitors
Author name:Kapppppa
Pulse modified:2025-05-22 15:02:00.769000
Indicator created:2025-04-22 16:18:53
Indicator role:bruteforce
Indicator title:Telnet Login attempt
Indicator expiration:2025-05-22 16:00:00
Origin AS
AS215540 - GCS-AS
BGP Prefix
46.29.238.0/24
geo
Norway, Oslo
🕑 Europe/Oslo
hostname
100195.ip-ptr.tech
Address block ('inetnum' or 'NetRange' in whois database)
46.29.232.0 - 46.29.239.255
last_activity
2025-05-22 16:34:18.541000
last_warden_event
2025-04-20 21:21:12
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 443, 2000
Tags:
CPEs:
ts_added
2025-02-28 03:52:39.733000
ts_last_update
2025-06-21 03:52:40.732000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses