IP address


.001115.236.186.134
Shodan(more info)
Passive DNS
Tags:
IP blacklists
AbuseIPDB
115.236.186.134 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-07-15 04:00:00.606000
Was present on blacklist at: 2026-07-15 04:00

Threat categories

TLRoleCategoryDetails
50 src scan
25 src login protocol: ssh
25 src

Warden events (2)
2026-07-18
AttemptLogin (node.e47683): 1
2026-07-13
IntrusionUserCompromise (node.40929a): 1
DShield reports (IP summary, reports)
2026-07-13
Number of reports: 21
Distinct targets: 10
2026-07-14
Number of reports: 34
Distinct targets: 15
2026-07-15
Number of reports: 34
Distinct targets: 15
2026-07-20
Number of reports: 15
Distinct targets: 4
2026-07-26
Number of reports: 119
Distinct targets: 3
Origin AS
AS4134 - CHINANET-BACKBONE
BGP Prefix
115.224.0.0/12
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
115.224.0.0 - 115.239.255.255
last_activity
2026-07-18 21:00:57.914000
last_warden_event
2026-07-18 21:00:57.914000
rep
0.0010066656806752006
reserved_range
0
Shodan's InternetDB
Open ports: 143, 161, 389, 587, 995, 5357, 5985, 6080, 7547
Tags: starttls, self-signed
CPEs:
ts_added
2026-07-14 04:00:15.756000
ts_last_update
2026-07-27 05:02:59.494000

Warden event timeline

DShield event timeline

Presence on blacklists