IP address


.002121.40.255.145
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
25 src scan

Warden events (20)
2026-08-22
ReconScanning (node.86eb21): 1
2026-08-21
ReconScanning (node.86eb21): 1
2026-08-07
ReconScanning (node.86eb21): 1
2026-08-04
ReconScanning (node.86eb21): 1
2026-08-03
ReconScanning (node.86eb21): 1
2026-07-29
ReconScanning (node.86eb21): 1
2026-07-21
ReconScanning (node.86eb21): 1
2026-07-20
ReconScanning (node.86eb21): 1
2026-07-19
ReconScanning (node.86eb21): 1
2026-07-16
ReconScanning (node.86eb21): 1
2026-07-15
ReconScanning (node.86eb21): 1
2026-07-03
ReconScanning (node.86eb21): 1
2026-07-01
ReconScanning (node.86eb21): 1
2026-06-27
ReconScanning (node.86eb21): 1
2026-06-24
ReconScanning (node.86eb21): 1
2026-06-17
ReconScanning (node.86eb21): 1
2026-06-15
ReconScanning (node.86eb21): 1
2026-06-14
ReconScanning (node.86eb21): 1
2026-06-13
ReconScanning (node.86eb21): 1
2026-06-08
ReconScanning (node.86eb21): 1
Origin AS
AS37963 - CNNIC-ALIBABA-CN-NET-AP
BGP Prefix
121.40.0.0/15
dshield
[]
geo
China, Hangzhou
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
121.40.0.0 - 121.43.255.255
last_activity
2026-08-22 01:23:11
last_warden_event
2026-08-22 01:23:11
rep
0.0016812156568364323
reserved_range
0
Shodan's InternetDB
Open ports: 13, 19, 21, 43, 80, 81, 102, 111, 548, 591, 666, 808, 993, 1026, 1198, 1200, 1235, 1443, 1446, 1455, 1968, 2000, 2008, 2058, 2181, 2352, 2404, 2562, 3001, 3098, 3113, 3167, 3174, 3260, 3345, 3552, 3562, 3749, 4040, 4063, 4242, 4369, 4434, 4443, 4500, 5053, 5123, 5135, 5357, 5569, 5593, 5678, 5800, 5801, 6011, 6400, 6668, 7547, 7548, 8009, 8010, 8085, 8089, 8105, 8132, 8137, 8203, 8473, 8521, 8540, 8554, 8569, 8649, 8731, 8816, 8888, 8935, 8989, 9009, 9012, 9017, 9056, 9090, 9095, 9106, 9119, 9137, 9156, 9161, 9192, 9218, 9236, 9860, 9966
Tags: honeypot
CPEs:
ts_added
2025-07-25 05:08:06.951000
ts_last_update
2026-08-31 05:10:36.643000

Warden event timeline

DShield event timeline