IP address


.000196.190.229.115
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
38 src login protocol: ssh
port: 37601
38 dst malware_distribution

Warden events (14)
2026-09-12
ReconScanning (node.9c1411): 1
2026-09-11
ReconScanning (node.9c1411): 1
2026-09-04
ReconScanning (node.9c1411): 1
2026-08-27
ReconScanning (node.ce2b59): 2
2026-08-26
ReconScanning (node.ce2b59): 3
2026-08-25
ReconScanning (node.ce2b59): 2
2026-08-22
ReconScanning (node.9c1411): 2
2026-08-21
ReconScanning (node.9c1411): 1
2026-08-18
ReconScanning (node.9c1411): 1
Origin AS
AS24757 - EthioNet-AS
BGP Prefix
196.190.224.0/20
geo
Ethiopia, Addis Ababa
🕑 Africa/Addis_Ababa
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
196.188.0.0 - 196.191.255.255
last_activity
2026-09-12 13:05:31
last_warden_event
2026-09-12 13:05:31
misp_events
[]
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 80, 443
Tags: self-signed
CPEs: –
ts_added
2026-08-18 23:21:41.426000
ts_last_update
2026-10-08 23:21:50.135000

Warden event timeline

DShield event timeline