IP address


.409147.185.238.144
Shodan(more info)
Passive DNS
Tags: Scanner

Threat categories

TLRoleCategoryDetails
48 src scan port: many

Warden events (60)
2026-04-02
ReconScanning (node.ce2b59): 1
ReconScanning (node.86eb21): 3
2026-03-30
ReconScanning (node.86eb21): 5
2026-03-29
ReconScanning (node.86eb21): 9
ReconScanning (node.ce2b59): 2
2026-03-28
ReconScanning (node.86eb21): 9
2026-03-27
ReconScanning (node.86eb21): 6
ReconScanning (node.ce2b59): 1
2026-03-26
ReconScanning (node.86eb21): 10
2026-03-25
ReconScanning (node.86eb21): 4
2026-03-24
ReconScanning (node.86eb21): 9
2026-03-23
ReconScanning (node.86eb21): 1
Origin AS
AS36007 - KAMATERA
BGP Prefix
147.185.238.0/24
geo
United States, Newark
🕑 America/New_York
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
147.185.238.0 - 147.185.239.255
last_activity
2026-04-02 05:01:00
last_warden_event
2026-04-02 05:01:00
rep
0.408730933779762
reserved_range
0
Shodan's InternetDB
Open ports: 80
Tags:
CPEs: cpe:/a:f5:nginx:1.29.5
ts_added
2026-03-23 19:14:53.826000
ts_last_update
2026-04-02 19:15:00.198000

Warden event timeline

DShield event timeline