IP address


.285172.247.113.138
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
172.247.113.138 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2024-09-29 02:50:00.926000
Was present on blacklist at: 2024-09-28 02:50, 2024-09-29 02:50
AbuseIPDB
172.247.113.138 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2024-09-28 04:00:00.590000
Was present on blacklist at: 2024-09-28 04:00
Warden events (354)
2024-09-28
ReconScanning (node.368407): 38
ReconScanning (node.4dc198): 36
2024-09-27
ReconScanning (node.368407): 164
ReconScanning (node.ce2b59): 28
ReconScanning (node.4dc198): 21
2024-09-26
ReconScanning (node.ce2b59): 15
ReconScanning (node.368407): 38
ReconScanning (node.4dc198): 14
DShield reports (IP summary, reports)
2024-09-26
Number of reports: 153
Distinct targets: 103
2024-09-27
Number of reports: 578
Distinct targets: 387
2024-09-28
Number of reports: 176
Distinct targets: 114
Origin AS
AS40065 - CNSERVERS
BGP Prefix
172.247.0.0/16
geo
United States
🕑 America/Chicago
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
172.247.0.0 - 172.247.255.255
last_activity
2024-09-28 11:07:26
last_warden_event
2024-09-28 11:07:26
rep
0.2845238095238095
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 443
Tags:
CPEs: cpe:/a:openbsd:openssh:7.4, cpe:/a:f5:nginx
ts_added
2024-09-26 16:58:12.907000
ts_last_update
2024-09-29 16:58:20.720000

Warden event timeline

DShield event timeline

Presence on blacklists