IP address


.085121.147.219.84
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
121.147.219.84 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-12-21 03:50:00.978000
Was present on blacklist at: 2025-10-16 02:50, 2025-10-17 02:50, 2025-10-18 02:50, 2025-10-19 02:50, 2025-10-20 02:50, 2025-10-21 02:50, 2025-10-22 02:50, 2025-10-23 02:50, 2025-10-24 02:50, 2025-10-26 03:50, 2025-10-27 03:50, 2025-10-31 03:50, 2025-11-01 03:50, 2025-11-02 03:50, 2025-11-03 03:50, 2025-11-04 03:50, 2025-11-05 03:50, 2025-11-06 03:50, 2025-11-07 03:50, 2025-11-08 03:50, 2025-11-09 03:50, 2025-11-10 03:50, 2025-11-12 03:50, 2025-11-14 03:50, 2025-11-15 03:50, 2025-11-16 03:50, 2025-11-17 03:50, 2025-11-19 03:50, 2025-11-20 03:50, 2025-11-21 03:50, 2025-11-22 03:50, 2025-11-23 03:50, 2025-11-24 03:50, 2025-11-26 03:50, 2025-11-27 03:50, 2025-11-30 03:50, 2025-12-02 03:50, 2025-12-03 03:50, 2025-12-04 03:50, 2025-12-06 03:50, 2025-12-07 03:50, 2025-12-10 03:50, 2025-12-11 03:50, 2025-12-12 03:50, 2025-12-13 03:50, 2025-12-14 03:50, 2025-12-15 03:50, 2025-12-16 03:50, 2025-12-17 03:50, 2025-12-18 03:50, 2025-12-21 03:50
Warden events (31)
2025-12-22
ReconScanning (node.368407): 1
2025-12-17
ReconScanning (node.368407): 1
2025-12-16
ReconScanning (node.368407): 1
2025-12-12
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-12-10
ReconScanning (node.368407): 1
2025-12-01
AnomalyTraffic (node.ffe95c): 2
ReconScanning (node.4dc198): 2
ReconScanning (node.368407): 1
2025-11-29
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-11-26
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-11-25
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-11-24
ReconScanning (node.368407): 1
2025-11-23
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-11-22
ReconScanning (node.368407): 1
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-11-12
ReconScanning (node.368407): 1
2025-11-10
AnomalyTraffic (node.ffe95c): 1
ReconScanning (node.4dc198): 1
2025-11-09
ReconScanning (node.4dc198): 1
2025-10-31
ReconScanning (node.368407): 1
2025-10-27
ReconScanning (node.368407): 1
2025-10-22
ReconScanning (node.368407): 1
2025-10-18
ReconScanning (node.4dc198): 1
DShield reports (IP summary, reports)
2025-11-03
Number of reports: 10
Distinct targets: 6
2025-11-04
Number of reports: 10
Distinct targets: 6
2025-12-17
Number of reports: 11
Distinct targets: 8
2025-12-18
Number of reports: 11
Distinct targets: 8
Origin AS
AS4766 - KIXS-AS-KR KIXS-AS-KR-KR
BGP Prefix
121.144.0.0/13
geo
South Korea, Gwangsan-gu
🕑 Asia/Seoul
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
121.128.0.0 - 121.159.255.255
last_activity
2025-12-22 19:11:30
last_warden_event
2025-12-22 19:11:30
rep
0.08511904761904762
reserved_range
0
Shodan's InternetDB
Open ports: 8554
Tags:
CPEs:
ts_added
2025-10-16 02:51:35.823000
ts_last_update
2025-12-23 02:51:40.191000

Warden event timeline

DShield event timeline

Presence on blacklists