IP address


.105111.231.164.195
Shodan(more info)
Passive DNS
Tags: Scanner

Threat categories

TLRoleCategoryDetails
50 src scan port: 22, 23, 80, 443, 2222, 2375
48 src login protocol: telnet
port: 23

Warden events (98)
2026-06-12
ReconScanning (node.ce2b59): 7
IntrusionUserCompromise (node.cfb4f7): 77
2026-06-11
ReconScanning (node.ce2b59): 10
IntrusionUserCompromise (node.cfb4f7): 4
Origin AS
AS45090 - CNNIC-TENCENT-NET-AP
BGP Prefix
111.231.164.0/23
geo
China, Shanghai
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
111.228.0.0 - 111.231.255.255
last_activity
2026-06-12 03:50:21
last_warden_event
2026-06-12 03:50:21
rep
0.10491655135226519
reserved_range
0
Shodan's InternetDB
Open ports: 23, 80
Tags: eol-product
CPEs: cpe:/a:f5:nginx:1.18.0, cpe:/o:canonical:ubuntu_linux, cpe:/o:linux:linux_kernel
ts_added
2026-06-11 17:08:26.350000
ts_last_update
2026-06-12 03:55:27.129000

Warden event timeline

DShield event timeline