Geolocation, network attribution and threat signals for any IPv4 address. Backed by 6 honeypots and a dozen public blocklists.
200 queries / day · free
status ● operational
Result for
65.20.139.136
AS203214 HULUMTELE, IQ🇺🇸 United Stateslighttpd/1.4.39
Suspicious
82 / 100
Reputation score
Reputation signals
1 of 6 categories triggered
Web spam
Clean
No match · Comment & forum spam blocklists (StopForumSpam, NOC forum networks).
Web attacks
Clean
No match · IP observed in web exploit attempts and DShield /24 lists.
Botnet C2
Clean
No match · C2 indicators from ccabuse and feodotracker.
Email spam
Clean
No match · Spamhaus DROP / EDROP listings.
Brute force
Detected
Captured by SSHD honeypot in last 24 h.
DDoS source
Clean
No match · Recent amplification or volumetric activity.
Network usage
probe @ 25 Jun 2026 03:16 UTC
Routabletrue
Hosting providerfalse
Pingable (ICMP)true
Tor exit nodefalse
Web serverlighttpd/1.4.39
Open proxy / VPNfalse
Bogon (unroutable)false
Country🇺🇸 US
Recommended actions
based on detected signals
BLOCK
Block traffic
Drop traffic from this IP at your firewall / edge.
BLOCK
Block account registrations
Prevent sign-ups from this address.
BLOCK
Block comments & forms
Block forum, comment and contact-form submissions.
Why:
Likely malicious traffic from blacklisted IP addresses.
.htaccessnginxiptables
# Outpost · block 65.20.139.136 (suspicious · 82/100)
# 1 reputation signal detected
Require all granted
Require not ip65.20.139.136# or block the entire /24:Require not ip65.20.139.0/24