IP Address Inspector

ATTENTION
  • This IP has not seen any suspicious activity within the last 3 months. This IP is most likely clean and trustworthy now. (This record will remain public for historical purposes, however.)

212.5.131.209 Spam ServerDictionary Attacker

The Project Honey Pot system has detected behavior from the IP address consistent with that of a mail server and dictionary attacker. Below we've reported some other data associated with this IP. This interrelated data helps map spammers' networks and aids in law enforcement efforts. If you know something about this IP, please leave a comment.

Lookup IP In: Domain Tools | SpamHaus | Spamcop | SenderBase | Google Groups | Google

Geographic Location Bulgaria Bulgaria
Spider First Seen approximately 12 years, 11 months, 4 weeks ago
Spider Last Seen within 10 years, 1 month, 5 weeks
Spider Sightings 41 visit(s)
User-Agents seen with 30 user-agent(s)

First Received From approximately 13 years, 1 week ago
Last Received From within 9 years, 2 months, 1 week
Number Received 2,496 email(s) sent from this IP

Dictionary Attacks 1,094 email(s) sent from this IP
First Received From approximately 13 years, 1 week ago
Last Received From within 10 years, 6 months, 4 weeks

Associated Harvesters
216.40.220.18 | H United States
208.66.195.5 | H United States
208.66.195.9 | H United States
63.139.58.140 | H United States
74.86.249.98 | H United States
74.53.249.34 | HW United States
208.53.138.64 | H Germany
208.53.147.137 | H Germany
216.32.82.18 | HS United States
85.120.152.208 | H Romania
74.86.209.74 | H United States
208.53.147.89 | H Germany
208.66.195.6 | H United States
75.125.167.2 | H United States
67.228.115.170 | H Denmark
208.66.195.21 | H United States
198.54.202.195 | HCR South Africa
209.160.32.68 | HS United States
74.54.110.194 | H United States
75.125.52.146 | H United States
194.176.43.121 | H Lithuania
216.40.222.98 | H United States
67.19.250.26 | H United States
70.85.113.242 | H United States
82.135.148.171 | H Lithuania
208.101.44.3 | H United States
64.34.174.33 | H United States
70.84.228.42 | H United States
208.66.195.2 | H United States
206.51.236.176 | H United States
70.84.55.114 | HC United States
64.38.35.162 | H United States
80.178.119.22 | H Israel
218.186.11.3 | HC Singapore
208.66.195.20 | H United States
208.66.195.11 | H United States
84.224.76.133  Hungary
211.62.251.125 | HS South Korea
77.68.0.121 | H Great Britain
75.125.167.130 | H United States
208.66.195.7 | H United States
216.40.222.66 | H United States
60.39.204.165 | H Japan
88.245.72.241 | HSD Turkey
74.86.14.10 | H United States
59.104.118.25 | H Taiwan
216.40.222.50 | H United States
208.66.195.10 | H United States
75.125.47.162 | HSDW United States
80.200.107.19 | H Belgium
70.87.196.242 | H United States
64.56.65.65 | H United States
81.235.145.221 | H Sweden
66.90.104.20 | HR Great Britain
216.37.217.29 | H United States
208.66.195.4 | HC United States
75.125.18.178 | H United States
216.40.220.34 | H United States
209.62.25.34 | HC United States
204.15.164.206 | H United States
208.66.195.3 | H United States
75.125.194.194 | HS United States
64.170.211.130 | HSDC United States
67.19.114.226 | H United States
208.65.60.105 | H Canada
70.84.228.106 | H United States
64.56.65.125 | H United States
208.53.147.136 | H Germany
91.105.8.163 | H Latvia
75.125.254.18 | H United States
72.2.24.106 | H Canada
66.246.252.117 | HSD United States
66.197.142.5 | H United States
87.118.98.62 | H Germany
89.137.243.192 | HS Romania
IPs In The Neighborhood
212.5.131.18 Bulgaria
212.5.131.20 Bulgaria
212.5.131.26 | D Bulgaria
212.5.131.27 | SD Bulgaria
212.5.131.34 Bulgaria
212.5.131.50 | SD Bulgaria
212.5.131.90 Bulgaria
212.5.131.98 Bulgaria
212.5.131.106 Bulgaria
212.5.131.131 | SD Bulgaria
212.5.131.186 Bulgaria
212.5.131.202 | S Bulgaria
212.5.131.208 Bulgaria
212.5.131.210 | SD Bulgaria
212.5.131.211 | SD Bulgaria
212.5.131.212 | SD Bulgaria
212.5.131.213 | SD Bulgaria
212.5.131.214 | SD Bulgaria
212.5.131.227 Bulgaria
212.5.131.233 Bulgaria
212.5.131.244 | SD Bulgaria
212.5.131.253 Bulgaria
212.5.131.254 Bulgaria
212.5.132.8 Bulgaria
212.5.132.10 | SD Bulgaria
212.5.132.30 | SD Bulgaria
212.5.132.34 | SD Bulgaria
212.5.132.62 Bulgaria
212.5.132.74 | S Bulgaria
212.5.132.94 Bulgaria
212.5.132.98 Bulgaria
212.5.132.171 | S Bulgaria
212.5.131.209's User Agent Strings
Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; BTRS122154)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; AskTbNRO/5.11.3.15590)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; EasyBits GO v1.0; .NET CLR 1.1.4322)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB6.6; InfoPath.2; IE0006_ver1;EN_US)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.3; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; InfoPath.2)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.4; .NET CLR 2.0.50727)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET4.0C; .NET4.0E; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0; GTB7.1; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; eSobiSubscriber 2.0.4.16; MAAR; .NET4.0C)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; AskTbNRO2/5.12.2.16749)
Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; eSobiSubscriber 2.0.4.16; InfoPath.1; .NET4.0C)
Mozilla/5.0 (iPhone; CPU iPhone OS 5_1_1 like Mac OS X) AppleWebKit/534.46 (KHTML, like Gecko) Version/5.1 Mobile/9B206 Safari/7534.48.3
Mozilla/5.0 (Windows NT 5.1) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.79 Safari/535.11
Mozilla/5.0 (Windows NT 5.1) AppleWebKit/536.5 (KHTML, like Gecko) Chrome/19.0.1084.56 Safari/536.5
Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.79 Safari/537.4
Mozilla/5.0 (Windows NT 5.1; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
Mozilla/5.0 (Windows NT 5.1; rv:12.0) Gecko/20100101 Firefox/12.0
Mozilla/5.0 (Windows NT 5.1; rv:13.0) Gecko/20100101 Firefox/13.0.1
Mozilla/5.0 (Windows NT 5.1; rv:17.0) Gecko/20100101 Firefox/17.0 FirePHP/0.7.1
Mozilla/5.0 (Windows NT 5.1; rv:2.0.1) Gecko/20100101 Firefox/4.0.1
Mozilla/5.0 (Windows NT 5.1; rv:8.0.1) Gecko/20100101 Firefox/8.0.1
Mozilla/5.0 (Windows NT 6.0; rv:5.0) Gecko/20100101 Firefox/5.0
Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.1 (KHTML, like Gecko) Chrome/21.0.1180.89 Safari/537.1
Mozilla/5.0 (Windows NT 6.1; rv:16.0) Gecko/20100101 Firefox/16.0
Mozilla/5.0 (Windows NT 6.1; rv:8.0) Gecko/20100101 Firefox/8.0
Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.79 Safari/535.11
Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
Mozilla/5.0 (Windows NT 6.1; WOW64; rv:5.0) Gecko/20100101 Firefox/5.0
Mozilla/5.0 (Windows; U; Windows NT 5.1; bg; rv:1.9.2.10) Gecko/20100914 Firefox/3.6.10
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.2.25) Gecko/20111212 Firefox/3.6.25
Example Messages Sent From 212.5.131.209
Subject: Bring more satisfaction to your loving life
Subject: =?windows-1251?B?0eXs6O3g8Psg7+4g7u/y6Ozo5+D26Ogg7=?=
Subject: Универсальная домашняя пила!!
Subject: Универсальная домашняя пила!!
Subject: Универсальная домашняя пила!!
Example User Names Used By 212.5.131.209
User-name: 45a9528bc.ca9f22c3e
User-name: 45aa22dd.1000509
User-name: 4truew
User-name: 589
User-name: aafljnraltmann
User-name: aapipalta.gamelin
User-name: accounting
User-name: acqulyn
User-name: admin
User-name: a_dudley
User-name: ague
User-name: aliesspooky
User-name: aligady
User-name: amjustsendingthisleter
User-name: anjaravenhorst
User-name: asmiluminada_o_melick
User-name: avto
User-name: bader
User-name: bartonwprvitt
User-name: beyal
User-name: bfu
User-name: bhfda
User-name: bible
User-name: bierly
User-name: bisi
User-name: bivona
User-name: boss
User-name: bp
User-name: bpierce
User-name: br
M.Hell2 commented...
This IP is also listed at ReputationAuthority:

The ip 212.5.131.209 has sent a high ratio of spam (89 percent).

http://www.reputationauthority.org/lookup.php?ip=212.5.131.209

I suggest that this not be whitelisted, it's obviously been used by criminals for some time.
December 24 2012 09:52 AM

M.Hell2 commented...
This IP has been involved in DDOS attacks against my server, there's no way it shoud be whitelisted.

Here's some examples :
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Opera/7.54 (Windows NT 5.1; U) [pl]"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; FREE; .NET CLR 1.1.4322)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 4.0)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0; .NET CLR 1.1.4322)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; WOW64; SV1; .NET CLR 2.0.50727)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.2; Win64; AMD64)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; MSIE 5.5; Windows NT 5.0) Opera 7.02 Bork-edition [en]"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 4.0; .NET CLR 1.0.2914)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)"
212.5.131.209 - - [23/Dec/2012:09:26:53 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 7.0b; Windows NT 6.0 ; .NET CLR 2.0.50215; SL Commerce Client v1.0; Tablet PC 2.0"
212.5.131.209 - - [23/Dec/2012:09:26:54 -0600] "POST /script.php HTTP/1.1" 404 - "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)"
December 24 2012 09:49 AM

Honey Pot System commented...
WHITELIST NOTICE: This IP has been marked to be included on Project Honey Pot whitelists. The whitelist is scheduled with a delay of 00:02:05. Documented reason for whitelist: Hit by a virus or trojan
December 09 2012 12:14 PM

Honey Pot System commented...
WHITELIST NOTICE: This IP has been whitelisted. Future bad activity will result in automatic removal.
August 13 2011 10:40 AM

Honey Pot System commented...
WHITELIST NOTICE: This IP has been marked to be included on Project Honey Pot whitelists. The whitelist is scheduled with a delay of 00:00:25. Documented reason for whitelist: Mistaken Listing
August 13 2011 10:39 AM

Honey Pot System commented...
WHITELIST NOTICE: This IP has been REMOVED from Project Honey Pot whitelists; bad activity was encountered.
June 20 2011 02:14 AM

Honey Pot System commented...
WHITELIST NOTICE: This IP has been whitelisted. Future bad activity will result in automatic removal.
June 16 2011 12:50 PM

Honey Pot System commented...
WHITELIST NOTICE: This IP has been marked to be included on Project Honey Pot whitelists. The whitelist is scheduled with a delay of 00:00:05. Documented reason for whitelist: Mistaken Listing
June 16 2011 12:48 PM

Page generated on: April 23 2024 02:44:16 PM
theresamunoz852@yahoo.com jeanneruss537@vbwebmail.com marcgrossman262@gmail.com ofeliacompton475@gmail.com
do not follow this link

Privacy Policy | Terms of Use | About Project Honey Pot | FAQ | Cloudflare Site Protection | Contact Us

Copyright © 2004–24, Unspam Technologies, Inc. All rights reserved.

Advertisements displayed on this page are not necessarily endorsed by Project Honey Pot

contact | wiki | email