IP address


.59964.89.163.212
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
Spamhaus SBL
64.89.163.212 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-04-02 15:39:50.214000
Was present on blacklist at: 2026-03-26 15:39, 2026-04-02 15:39
Spamhaus DROP
64.89.163.212 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-04-02 15:39:50.214000
Was present on blacklist at: 2026-03-26 15:39, 2026-04-02 15:39
AbuseIPDB
64.89.163.212 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-04-05 04:00:00.641000
Was present on blacklist at: 2026-03-28 05:00, 2026-03-30 04:00, 2026-04-01 04:00, 2026-04-03 04:00, 2026-04-05 04:00

Threat categories

TLRoleCategoryDetails
70 src scan port: 2255, 3333, 8820, 9901, 10445, 12088, 38522, 42424, 63922
25 src

Warden events (953)
2026-04-06
ReconScanning (node.ce2b59): 18
2026-04-05
ReconScanning (node.368407): 83
ReconScanning (node.4dc198): 123
ReconScanning (node.ce2b59): 15
2026-04-04
ReconScanning (node.4dc198): 47
ReconScanning (node.ce2b59): 6
ReconScanning (node.368407): 37
2026-04-03
ReconScanning (node.ce2b59): 20
2026-04-01
ReconScanning (node.ce2b59): 23
2026-03-31
ReconScanning (node.ce2b59): 14
2026-03-30
ReconScanning (node.4dc198): 36
ReconScanning (node.ce2b59): 5
ReconScanning (node.368407): 31
2026-03-29
ReconScanning (node.ce2b59): 10
ReconScanning (node.4dc198): 92
ReconScanning (node.368407): 85
2026-03-28
ReconScanning (node.ce2b59): 37
2026-03-27
ReconScanning (node.ce2b59): 8
ReconScanning (node.4dc198): 19
ReconScanning (node.368407): 19
2026-03-26
ReconScanning (node.4dc198): 101
ReconScanning (node.368407): 95
ReconScanning (node.ce2b59): 29
DShield reports (IP summary, reports)
2026-03-27
Number of reports: 61
Distinct targets: 42
2026-03-28
Number of reports: 329
Distinct targets: 232
2026-03-29
Number of reports: 329
Distinct targets: 232
2026-03-30
Number of reports: 94
Distinct targets: 65
2026-03-31
Number of reports: 94
Distinct targets: 65
2026-04-01
Number of reports: 403
Distinct targets: 296
2026-04-03
Number of reports: 341
Distinct targets: 241
2026-04-04
Number of reports: 83
Distinct targets: 61
2026-04-05
Number of reports: 252
Distinct targets: 178
Origin AS
AS401626 - NETIFACE-TORONTO
BGP Prefix
64.89.163.0/24
geo
United Kingdom
🕑 Europe/London
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
64.89.160.0 - 64.89.163.255
last_activity
2026-04-06 22:31:18
last_warden_event
2026-04-06 22:31:18
rep
0.5988068943931943
reserved_range
0
ts_added
2026-03-26 15:39:48.396000
ts_last_update
2026-04-06 22:34:36.364000

Warden event timeline

DShield event timeline

Presence on blacklists