IP address


.00051.38.137.108ip108.ip-51-38-137.eu
Shodan(more info)
Passive DNS
Tags: IP in hostname Scanner
IP blacklists
ThreatFox
51.38.137.108 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2025-03-22 11:10:00.240000
Was present on blacklist at: 2025-03-19 15:10, 2025-03-19 19:10, 2025-03-19 23:10, 2025-03-20 03:10, 2025-03-20 07:10, 2025-03-20 11:10, 2025-03-20 15:10, 2025-03-20 15:10, 2025-03-20 19:10, 2025-03-20 19:10, 2025-03-20 23:10, 2025-03-20 23:10, 2025-03-21 03:10, 2025-03-21 03:10, 2025-03-21 07:10, 2025-03-21 07:10, 2025-03-21 11:10, 2025-03-21 11:10, 2025-03-21 15:10, 2025-03-21 19:10, 2025-03-21 23:10, 2025-03-22 03:10, 2025-03-22 07:10, 2025-03-22 11:10
AbuseIPDB
51.38.137.108 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-03-21 05:00:00.409000
Was present on blacklist at: 2025-03-21 05:00
Turris greylist
51.38.137.108 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-01 21:15:00.226000
Was present on blacklist at: 2025-03-21 22:15, 2025-03-31 21:15, 2025-04-01 21:15
Warden events (146)
2025-04-04
ReconScanning (node.4dc198): 6
2025-04-03
ReconScanning (node.4dc198): 5
2025-04-02
ReconScanning (node.4dc198): 6
2025-04-01
ReconScanning (node.4dc198): 5
2025-03-31
ReconScanning (node.4dc198): 2
IntrusionUserCompromise (node.cfb4f7): 3
2025-03-30
ReconScanning (node.4dc198): 8
IntrusionUserCompromise (node.cfb4f7): 2
2025-03-20
ReconScanning (node.4dc198): 109
DShield reports (IP summary, reports)
2025-03-19
Number of reports: 110
Distinct targets: 8
2025-03-20
Number of reports: 325
Distinct targets: 153
2025-03-30
Number of reports: 29
Distinct targets: 20
2025-04-02
Number of reports: 12
Distinct targets: 10
2025-04-03
Number of reports: 14
Distinct targets: 8
2025-04-04
Number of reports: 14
Distinct targets: 13
OTX pulses
[602bc528f447d628d41494f2] 2021-02-16 13:14:16.945000 | Ka's Honeypot visitors
Author name:Kapppppa
Pulse modified:2025-04-18 23:30:04.839000
Indicator created:2025-03-20 01:06:10
Indicator role:bruteforce
Indicator title:Telnet Login attempt
Indicator expiration:2025-04-19 01:00:00
Origin AS
AS16276 - OVH
BGP Prefix
51.38.0.0/16
geo
France
🕑 Europe/Paris
hostname
ip108.ip-51-38-137.eu
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
51.38.0.0 - 51.38.255.255
last_activity
2025-04-19 00:36:51.500000
last_warden_event
2025-04-04 15:47:09
rep
0.0
reserved_range
0
ts_added
2025-03-19 15:10:00.264000
ts_last_update
2025-04-27 15:10:10.260000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses