IP address


.000164.160.187.69
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
25 dst cc malware_family: elf.inc, win.netc

Origin AS
AS24757 - EthioNet-AS
BGP Prefix
164.160.187.0/24
geo
Ethiopia
🕑 Africa/Addis_Ababa
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
164.160.184.0 - 164.160.187.255
last_activity
2026-08-24 00:00:00
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22, 25, 80, 443, 5000, 8080, 8081, 8090, 8443
Tags: starttls, c2
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:oracle:jre, cpe:/a:jenkins:jenkins:2.568.2, cpe:/a:eclipse:jetty:12.1.8, cpe:/a:f5:nginx, cpe:/a:openbsd:openssh:8.9p1, cpe:/a:apache:http_server:2.4.52
ts_added
2026-09-12 04:15:29.875000
ts_last_update
2026-10-08 04:15:30.359000

Warden event timeline

DShield event timeline