IP address


.00595.140.156.252
Shodan(more info)
Passive DNS
Tags:
IP blacklists
ThreatFox
95.140.156.252 is listed on the ThreatFox blacklist.

Description: ThreatFox is a free platform from abuse.ch with the goal of<br>sharing indicators of compromise (IOCs) associated with malware with the<br>infosec community, AV vendors and threat intelligence providers.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-22 10:10:00.399000
Was present on blacklist at: 2025-04-20 14:10, 2025-04-20 18:10, 2025-04-20 22:10, 2025-04-21 02:10, 2025-04-21 06:10, 2025-04-21 10:10, 2025-04-21 14:10, 2025-04-21 18:10, 2025-04-21 22:10, 2025-04-22 02:10, 2025-04-22 06:10, 2025-04-22 10:10
Warden events (1)
2025-04-19
ReconScanning (node.9c1411): 1
Origin AS
AS9123 - TimeWeb-AS
BGP Prefix
95.140.156.0/24
geo
Poland, Warsaw
🕑 Europe/Warsaw
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
95.140.144.0 - 95.140.159.255
last_activity
2025-04-19 07:46:05
last_warden_event
2025-04-19 07:46:05
rep
0.0047619047619047615
reserved_range
0
ts_added
2025-04-19 08:00:29.496000
ts_last_update
2025-05-01 08:00:31.134000

Warden event timeline

DShield event timeline

Presence on blacklists