IP address


.040120.197.16.250
Shodan(more info)
Passive DNS
Tags: Residential proxy

Threat categories

TLRoleCategoryDetails
65 src scan port: 22, 23, 80, 443, 2222, 2375
31 src login protocol: ssh, telnet
port: 22, 23

Warden events (141)
2026-08-17
ReconScanning (node.ce2b59): 3
2026-08-16
ReconScanning (node.ce2b59): 59
AttemptLogin (node.ce2b59): 1
2026-08-15
ReconScanning (node.ce2b59): 67
IntrusionUserCompromise (node.cfb4f7): 2
2026-08-14
ReconScanning (node.ce2b59): 9
DShield reports (IP summary, reports)
2026-08-14
Number of reports: 14
Distinct targets: 3
2026-08-15
Number of reports: 14
Distinct targets: 3
2026-08-16
Number of reports: 75
Distinct targets: 27
Residential proxy info (data provided by Layer3 Intel)
Last seen: 2026-08-15 03:15:50}
Percent days seen: 3 %
Networks: IPCOLA
Details: https://layer3intel.com/context/120.197.16.250
Origin AS
AS9808 - CMNET-GD
BGP Prefix
120.197.16.0/24
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
120.192.0.0 - 120.255.255.255
last_activity
2026-08-17 01:56:39
last_warden_event
2026-08-17 01:56:39
rep
0.039746984464783974
reserved_range
0
ts_added
2026-08-14 20:53:04.073000
ts_last_update
2026-08-25 20:53:10.429000

Warden event timeline

DShield event timeline