IP address


.028118.107.172.75
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
48 src

Warden events (5)
2026-03-10
AnomalyTraffic (node.ffe95c): 5
Origin AS
AS54994 - QUANTILNETWORKS
BGP Prefix
118.107.172.0/24
geo
South Korea
🕑 Asia/Seoul
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
118.107.160.0 - 118.107.175.255
last_activity
2026-03-10 16:28:15
last_warden_event
2026-03-10 16:28:15
rep
0.027678571428571427
reserved_range
0
Shodan's InternetDB
Open ports: 111, 190, 442, 443, 444, 448, 1433, 1443, 1723, 1800, 1883, 2000, 2003, 2053, 2081, 2083, 2086, 2087, 2210, 2323, 3000, 3001, 3050, 3150, 4433, 4434, 4444, 4477, 4899, 5001, 5003, 5006, 5007, 5009, 5100, 5222, 5555, 5672, 5701, 6000, 6001, 6006, 6007, 6080, 6081, 6102, 6443, 6510, 6601, 7001, 7005, 7010, 7014, 7443, 7777, 8000, 8002, 8009, 8010, 8012, 8029, 8030, 8032, 8060, 8073, 8076, 8077, 8081, 8082, 8085, 8086, 8087, 8089, 8090, 8098, 8112, 8180, 8181, 8200, 8401, 8443, 8473, 8484, 8500, 8544, 8566, 8663, 8877, 8881, 8883, 8887, 8888, 8889, 8912, 9000, 9001, 9008, 9009, 9042, 9043, 9051, 9053, 9060, 9070, 9080, 9091, 9092, 9100, 9102, 9103, 9110, 9111, 9113, 9114, 9120, 9122, 9123, 9151, 9160, 9168, 9169, 9191, 9192, 9195, 9197, 9200, 9212, 9241, 9243, 9247, 9292, 9295, 9313, 9315, 9333, 9389, 9398, 9444, 9480, 9505, 9530, 9550, 9600, 9633, 9758, 9800, 9803, 9869, 9876, 9901, 9918, 9943, 9944, 9998, 9999, 10000, 10001, 10004, 10006, 10030, 10240, 10443, 10477, 11000, 11112, 12345, 14024, 14026, 14403, 14875, 14894, 14895, 14897, 14900, 14909, 15151, 15443, 15502, 15647, 16068, 16103, 17001, 17184, 17772, 17774, 17777, 18001, 18004, 18010, 18012, 18029, 18033, 18080, 18081, 18087, 18102, 18181, 19000, 19091, 20000, 22107, 50000, 50070, 62016
Tags:
CPEs: cpe:/a:f5:nginx
ts_added
2026-03-11 12:11:00.923000
ts_last_update
2026-03-18 12:11:10.237000

Warden event timeline

DShield event timeline