IP address


.019183.238.181.202
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
183.238.181.202 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-05-20 02:50:00.775000
Was present on blacklist at: 2026-05-17 02:50, 2026-05-19 02:50, 2026-05-20 02:50

Threat categories

TLRoleCategoryDetails
75 src scan port: 27015
25 src

Warden events (116)
2026-05-19
ReconScanning (node.ce2b59): 6
2026-05-18
ReconScanning (node.ce2b59): 39
2026-05-17
ReconScanning (node.ce2b59): 45
2026-05-16
ReconScanning (node.ce2b59): 22
2026-05-05
ReconScanning (node.ce2b59): 4
DShield reports (IP summary, reports)
2026-05-16
Number of reports: 26
Distinct targets: 16
2026-05-17
Number of reports: 26
Distinct targets: 16
2026-05-18
Number of reports: 26
Distinct targets: 17
2026-05-19
Number of reports: 26
Distinct targets: 17
Origin AS
AS9808 - CMNET-GD
BGP Prefix
183.238.181.0/24
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
183.192.0.0 - 183.255.255.255
last_activity
2026-05-19 03:44:21
last_warden_event
2026-05-19 03:44:21
rep
0.019164752830465814
reserved_range
0
Shodan's InternetDB
Open ports: 5006, 8801
Tags:
CPEs: cpe:/a:apache:http_server, cpe:/a:f5:nginx, cpe:/a:sencha:ext_js, cpe:/a:synology:diskstation_manager:7.1.1-42962
ts_added
2026-05-05 11:55:27.724000
ts_last_update
2026-05-29 11:55:30.270000

Warden event timeline

DShield event timeline

Presence on blacklists