IP address


.001172.120.157.239
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
50 src scan

DShield reports (IP summary, reports)
2026-06-02
Number of reports: 101
Distinct targets: 7
2026-06-03
Number of reports: 101
Distinct targets: 7
2026-06-04
Number of reports: 238
Distinct targets: 11
2026-06-05
Number of reports: 405
Distinct targets: 9
2026-06-06
Number of reports: 144
Distinct targets: 8
2026-06-07
Number of reports: 144
Distinct targets: 8
2026-06-08
Number of reports: 82
Distinct targets: 7
2026-06-09
Number of reports: 86
Distinct targets: 7
2026-06-10
Number of reports: 86
Distinct targets: 7
2026-06-12
Number of reports: 101
Distinct targets: 7
2026-06-13
Number of reports: 101
Distinct targets: 7
Origin AS
AS214238 - iwihost
AS44559 - ITHOSTLINE
BGP Prefix
172.120.157.0/24
geo
United States
🕑 America/Chicago
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
172.120.0.0 - 172.121.255.255
rep
0.0008709710328421716
reserved_range
0
Shodan's InternetDB
Open ports: 24442
Tags:
CPEs: cpe:/a:openbsd:openssh:9.2p1, cpe:/o:debian:debian_linux, cpe:/o:linux:linux_kernel
ts_added
2026-06-03 05:04:38.485000
ts_last_update
2026-06-14 05:05:08.230000

Warden event timeline

DShield event timeline