IP address


.44897.74.4.4949.4.74.97.host.secureserver.net
Shodan(more info)
Passive DNS
Tags: IP in hostname
IP blacklists
Spamhaus XBL CBL
97.74.4.49 is listed on the Spamhaus XBL CBL blacklist.

Description: The Spamhaus Exploits Block List (XBL) is a realtime database of IP addresses of hijacked PCs infected by illegal 3rd party exploits, including open proxies, worms/viruses with built-in spam engines, and other types of trojan-horse exploits.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-08-10 14:20:00.074000
Was present on blacklist at: 2026-08-10 14:20
AbuseIPDB
97.74.4.49 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-08-16 04:00:00.613000
Was present on blacklist at: 2026-08-16 04:00
blocklist.de bots
97.74.4.49 is listed on the blocklist.de bots blacklist.

Description: Blocklist.de feed is a free and voluntary service provided<br>by a Fraud/Abuse-specialist. IPs performing attacks on the RFI-Attacks,<br>REG-Bots, IRC-Bots or BadBots.
Type of feed: primary (feed detail page)

Last checked at: 2026-08-16 10:05:05.161000
Was present on blacklist at: 2026-08-16 10:05

Threat categories

TLRoleCategoryDetails
55 src scan port: many
38 src

Warden events (289)
2026-08-16
ReconScanning (node.ce2b59): 18
2026-08-15
ReconScanning (node.ce2b59): 29
2026-08-14
ReconScanning (node.ce2b59): 16
2026-08-13
ReconScanning (node.ce2b59): 17
2026-08-12
ReconScanning (node.ce2b59): 21
2026-08-11
ReconScanning (node.ce2b59): 16
2026-08-10
ReconScanning (node.ce2b59): 21
2026-08-09
ReconScanning (node.ce2b59): 19
2026-08-08
ReconScanning (node.ce2b59): 23
2026-08-07
ReconScanning (node.ce2b59): 28
2026-08-06
ReconScanning (node.ce2b59): 23
2026-08-05
ReconScanning (node.ce2b59): 20
2026-08-04
ReconScanning (node.ce2b59): 24
2026-08-03
ReconScanning (node.ce2b59): 14
DShield reports (IP summary, reports)
2026-08-03
Number of reports: 83
Distinct targets: 12
2026-08-11
Number of reports: 32
Distinct targets: 14
2026-08-13
Number of reports: 67
Distinct targets: 8
Origin AS
AS398101 - GO-DADDY-COM-LLC
BGP Prefix
97.74.4.0/24
geo
United States
🕑 America/Chicago
hostname
49.4.74.97.host.secureserver.net
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
97.74.0.0 - 97.74.255.255
last_activity
2026-08-16 13:50:51
last_warden_event
2026-08-16 13:50:51
rep
0.4479818514785351
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 53, 80, 465, 995, 2082, 2083, 3306
Tags: database, eol-product, starttls, self-signed
CPEs: cpe:/a:oracle:mysql:5.5.61-cll, cpe:/a:exim:exim:4.91, cpe:/a:apache:http_server:2.2.31, cpe:/a:pureftpd:pure-ftpd, cpe:/a:openbsd:openssh:5.3, cpe:/a:openssl:openssl:1.0.1e
ts_added
2026-08-03 14:19:53.398000
ts_last_update
2026-08-16 14:20:00.683000

Warden event timeline

DShield event timeline

Presence on blacklists