IP address


.255139.64.165.221221-165-64-139.clients.gthost.com
Shodan(more info)
Passive DNS
Tags: IP in hostname Scanner

Threat categories

TLRoleCategoryDetails
70 src scan port: 23

Warden events (94)
2026-05-04
ReconScanning (node.ce2b59): 4
2026-05-03
ReconScanning (node.ce2b59): 32
2026-05-02
ReconScanning (node.ce2b59): 32
2026-05-01
ReconScanning (node.ce2b59): 22
2026-04-30
ReconScanning (node.ce2b59): 4
DShield reports (IP summary, reports)
2026-05-01
Number of reports: 448
Distinct targets: 4
2026-05-02
Number of reports: 4340
Distinct targets: 8
2026-05-03
Number of reports: 4340
Distinct targets: 8
2026-05-04
Number of reports: 4997
Distinct targets: 8
Origin AS
AS63023 - AS-GLOBALTELEHOST
BGP Prefix
139.64.165.0/24
geo
United States, Denver
🕑 America/Denver
hostname
221-165-64-139.clients.gthost.com
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
139.64.164.0 - 139.64.167.255
last_activity
2026-05-04 02:21:18
last_warden_event
2026-05-04 02:21:18
rep
0.2553571428571429
reserved_range
0
Shodan's InternetDB
Open ports: 22, 53, 80, 110, 143, 443, 465, 587, 993, 995, 2079, 2082, 2083, 2086, 2087, 2095, 2096, 3306
Tags: database, starttls
CPEs: cpe:/a:openbsd:openssh:8.7, cpe:/a:apache:http_server, cpe:/a:exim:exim:4.99.1, cpe:/a:mariadb:mariadb
ts_added
2026-04-30 22:31:16.102000
ts_last_update
2026-05-05 22:31:20.454000

Warden event timeline

DShield event timeline