IP address


.00065.21.124.106static.106.124.21.65.clients.your-server.de
Shodan(more info)
Passive DNS
Tags: IP in hostname Static IP
IP blacklists
ThreatFox
65.21.124.106 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2025-10-08 14:10:02.082000
Was present on blacklist at: 2025-10-06 18:10, 2025-10-06 18:10, 2025-10-06 18:10, 2025-10-06 18:10, 2025-10-06 18:10, 2025-10-06 22:10, 2025-10-06 22:10, 2025-10-06 22:10, 2025-10-06 22:10, 2025-10-06 22:10, 2025-10-07 02:10, 2025-10-07 02:10, 2025-10-07 02:10, 2025-10-07 02:10, 2025-10-07 02:10, 2025-10-07 06:10, 2025-10-07 06:10, 2025-10-07 06:10, 2025-10-07 06:10, 2025-10-07 06:10, 2025-10-07 14:10, 2025-10-07 14:10, 2025-10-07 14:10, 2025-10-07 14:10, 2025-10-07 14:10, 2025-10-07 18:10, 2025-10-07 18:10, 2025-10-07 18:10, 2025-10-07 18:10, 2025-10-07 18:10, 2025-10-07 22:10, 2025-10-07 22:10, 2025-10-07 22:10, 2025-10-07 22:10, 2025-10-07 22:10, 2025-10-08 02:10, 2025-10-08 02:10, 2025-10-08 02:10, 2025-10-08 02:10, 2025-10-08 02:10, 2025-10-08 06:10, 2025-10-08 06:10, 2025-10-08 06:10, 2025-10-08 06:10, 2025-10-08 06:10, 2025-10-08 10:10, 2025-10-08 10:10, 2025-10-08 10:10, 2025-10-08 10:10, 2025-10-08 10:10, 2025-10-08 14:10, 2025-10-08 14:10, 2025-10-08 14:10, 2025-10-08 14:10, 2025-10-08 14:10
Warden events (18)
2025-11-23
ReconScanning (node.9c1411): 1
2025-11-22
ReconScanning (node.9c1411): 1
AnomalyTraffic (node.ffe95c): 1
2025-11-03
ReconScanning (node.9c1411): 1
2025-10-31
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.9c1411): 1
2025-10-26
ReconScanning (node.9c1411): 1
2025-10-23
ReconScanning (node.9c1411): 4
2025-10-19
ReconScanning (node.9c1411): 2
2025-10-07
ReconScanning (node.9c1411): 1
2025-09-22
ReconScanning (node.9c1411): 2
2025-09-20
AnomalyTraffic (node.ffe95c): 1
2025-09-19
AnomalyTraffic (node.ffe95c): 1
DShield reports (IP summary, reports)
2025-09-20
Number of reports: 633
Distinct targets: 31
2025-09-28
Number of reports: 101
Distinct targets: 31
2025-09-29
Number of reports: 101
Distinct targets: 31
2025-10-04
Number of reports: 823
Distinct targets: 407
2025-10-05
Number of reports: 823
Distinct targets: 407
2025-10-22
Number of reports: 116
Distinct targets: 8
2025-10-23
Number of reports: 8214
Distinct targets: 26
2025-10-24
Number of reports: 8214
Distinct targets: 26
2025-11-07
Number of reports: 12
Distinct targets: 5
2025-11-26
Number of reports: 263
Distinct targets: 20
Origin AS
AS24940 - HETZNER-AS
BGP Prefix
65.21.0.0/16
geo
Finland, Helsinki
🕑 Europe/Helsinki
hostname
static.106.124.21.65.clients.your-server.de
hostname_class
['ip_in_hostname', 'static']
Address block ('inetnum' or 'NetRange' in whois database)
65.21.0.0 - 65.21.255.255
last_activity
2025-11-23 11:01:18
last_warden_event
2025-11-23 11:01:18
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22, 123, 9100, 9926
Tags:
CPEs: cpe:/a:openbsd:openssh:8.9p1, cpe:/o:canonical:ubuntu_linux
ts_added
2025-06-17 23:22:56.547000
ts_last_update
2025-12-18 23:23:00.279000

Warden event timeline

DShield event timeline

Presence on blacklists