IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (4109)
- 2026-03-16
-
- ReconScanning (node.9c1411): 26
- 2026-03-15
-
- ReconScanning (node.9c1411): 70
- 2026-03-14
-
- ReconScanning (node.9c1411): 86
- 2026-03-13
-
- ReconScanning (node.9c1411): 86
- 2026-03-12
-
- ReconScanning (node.9c1411): 40
- 2026-03-09
-
- ReconScanning (node.4dc198): 226
- ReconScanning (node.368407): 220
- ReconScanning (node.9c1411): 65
- 2026-03-08
-
- ReconScanning (node.4dc198): 257
- ReconScanning (node.9c1411): 80
- ReconScanning (node.368407): 275
- 2026-03-07
-
- ReconScanning (node.4dc198): 178
- ReconScanning (node.368407): 198
- ReconScanning (node.9c1411): 51
- 2026-03-06
-
- ReconScanning (node.4dc198): 229
- ReconScanning (node.368407): 228
- ReconScanning (node.9c1411): 62
- 2026-03-05
-
- ReconScanning (node.4dc198): 175
- ReconScanning (node.368407): 173
- ReconScanning (node.9c1411): 48
- 2026-03-04
-
- ReconScanning (node.368407): 177
- ReconScanning (node.4dc198): 182
- ReconScanning (node.9c1411): 47
- 2026-03-03
-
- ReconScanning (node.368407): 51
- ReconScanning (node.4dc198): 52
- ReconScanning (node.9c1411): 13
- 2026-03-02
-
- ReconScanning (node.4dc198): 172
- ReconScanning (node.368407): 171
- ReconScanning (node.9c1411): 42
- 2026-03-01
-
- ReconScanning (node.368407): 56
- ReconScanning (node.4dc198): 57
- ReconScanning (node.9c1411): 19
- 2026-02-28
-
- ReconScanning (node.368407): 82
- ReconScanning (node.4dc198): 83
- ReconScanning (node.9c1411): 25
- 2026-02-26
-
- ReconScanning (node.368407): 1
- 2026-02-22
-
- IntrusionUserCompromise (node.40929a): 1
- 2026-02-21
-
- ReconScanning (node.368407): 2
- 2026-02-20
-
- ReconScanning (node.368407): 2
- 2026-02-19
-
- AnomalyTraffic (node.ffe95c): 1
- ReconScanning (node.4dc198): 1
- 2026-02-16
-
- AnomalyTraffic (node.ffe95c): 1
- 2026-02-15
-
- ReconScanning (node.9c1411): 1
- 2026-02-14
-
- ReconScanning (node.4dc198): 46
- ReconScanning (node.368407): 44
- ReconScanning (node.9c1411): 7
- DShield reports (IP summary, reports)
- 2026-03-01
- Number of reports: 581
- Distinct targets: 422
- 2026-03-02
- Number of reports: 943
- Distinct targets: 726
- 2026-03-03
- Number of reports: 323
- Distinct targets: 225
- 2026-03-04
- Number of reports: 983
- Distinct targets: 724
- 2026-03-05
- Number of reports: 983
- Distinct targets: 724
- 2026-03-06
- Number of reports: 1209
- Distinct targets: 920
- 2026-03-09
- Number of reports: 486
- Distinct targets: 355
- 2026-03-12
- Number of reports: 266
- Distinct targets: 205
- 2026-03-13
- Number of reports: 266
- Distinct targets: 205
- 2026-03-14
- Number of reports: 566
- Distinct targets: 424
- 2026-03-15
- Number of reports: 322
- Distinct targets: 233
- 2026-03-16
- Number of reports: 227
- Distinct targets: 173
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 75 | src | scan | port: 13022, 16322, 18422, 36822, 39422, 65322 |
| 25 | src | — |
- Origin AS
- AS60223 - NETIFACE-AS
- BGP Prefix
- 185.242.3.0/24
- geo
- Netherlands
- 🕑 Europe/Amsterdam
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 185.242.0.0 - 185.242.3.255
- last_activity
- 2026-03-16 23:01:16
- last_warden_event
- 2026-03-16 23:01:16
- rep
- 0.04761904761904761
- reserved_range
- 0
- ts_added
- 2026-02-14 14:01:39.932000
- ts_last_update
- 2026-03-26 14:01:40.087000
Warden event timeline
DShield event timeline
Presence on blacklists

