IP address


.044103.61.191.166
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
103.61.191.166 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-10-14 02:50:00.962000
Was present on blacklist at: 2025-10-11 02:50, 2025-10-12 02:50, 2025-10-13 02:50, 2025-10-14 02:50
Warden events (147)
2025-10-07
ReconScanning (node.4dc198): 2
2025-10-05
ReconScanning (node.4dc198): 1
2025-10-01
ReconScanning (node.368407): 27
ReconScanning (node.4dc198): 26
2025-09-26
ReconScanning (node.368407): 27
ReconScanning (node.4dc198): 26
AnomalyTraffic (node.ffe95c): 2
2025-09-22
ReconScanning (node.4dc198): 17
ReconScanning (node.368407): 18
AnomalyTraffic (node.ffe95c): 1
DShield reports (IP summary, reports)
2025-09-19
Number of reports: 19
Distinct targets: 16
2025-09-21
Number of reports: 15
Distinct targets: 9
2025-09-22
Number of reports: 15
Distinct targets: 11
2025-09-23
Number of reports: 69
Distinct targets: 50
2025-09-28
Number of reports: 36
Distinct targets: 27
2025-09-29
Number of reports: 36
Distinct targets: 27
2025-10-10
Number of reports: 23
Distinct targets: 16
2025-10-11
Number of reports: 43
Distinct targets: 25
2025-10-12
Number of reports: 43
Distinct targets: 25
Origin AS
AS17623 - CNCGROUP-SZ
BGP Prefix
103.61.191.0/24
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
103.61.188.0 - 103.61.191.255
last_activity
2025-10-07 11:41:52
last_warden_event
2025-10-07 11:41:52
rep
0.044047619047619044
reserved_range
0
ts_added
2025-09-20 05:06:55.617000
ts_last_update
2025-10-14 05:49:10.870000

Warden event timeline

DShield event timeline

Presence on blacklists