IP address


.159120.227.221.0
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Echelon TLS/SSL crawler
120.227.221.0 is listed on the Echelon TLS/SSL crawler blacklist.

Description: TLS/SSL connection fingerprinting detected via Suricata
Type of feed: primary (feed detail page)

Last checked at: 2026-06-10 09:40:00.379000
Was present on blacklist at: 2026-06-03 09:40, 2026-06-04 09:40, 2026-06-05 09:40, 2026-06-06 09:40, 2026-06-07 09:40, 2026-06-08 09:40, 2026-06-09 09:40, 2026-06-10 09:40
spamhaus-pbl
120.227.221.0 is listed on the spamhaus-pbl blacklist.

Description:
Type of feed: (feed detail page)

Last checked at: 2026-06-03 09:40:45.765000
Was present on blacklist at: 2026-06-03 09:40
Echelon web crawler
120.227.221.0 is listed on the Echelon web crawler blacklist.

Description: HTTP web crawling activity detected on web honeypots
Type of feed: primary (feed detail page)

Last checked at: 2026-06-10 09:50:00.311000
Was present on blacklist at: 2026-06-03 09:50, 2026-06-04 09:50, 2026-06-05 09:50, 2026-06-06 09:50, 2026-06-07 09:50, 2026-06-08 09:50, 2026-06-09 09:50, 2026-06-10 09:50

Threat categories

TLRoleCategoryDetails
37 src scan

Origin AS
AS56047 - CMNET-Hunan-AP
BGP Prefix
120.227.220.0/23
geo
China, Xishan
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
120.192.0.0 - 120.255.255.255
rep
0.1591035847462855
reserved_range
0
ts_added
2026-06-03 09:40:44.477000
ts_last_update
2026-06-11 09:40:52.382000

Warden event timeline

DShield event timeline

Presence on blacklists