IP address


.038198.12.101.191198-12-101-191-host.colocrossing.com
Shodan(more info)
Passive DNS
Tags: IP in hostname

Threat categories

TLRoleCategoryDetails
50 src scan port: 23

Warden events (7)
2026-04-30
ReconScanning (node.ce2b59): 7
DShield reports (IP summary, reports)
2026-05-01
Number of reports: 69
Distinct targets: 3
Origin AS
AS36352 - AS-COLOCROSSING
BGP Prefix
198.12.101.0/24
geo
United States, Elk Grove Village
🕑 America/Chicago
hostname
198-12-101-191-host.colocrossing.com
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
198.12.64.0 - 198.12.127.255
last_activity
2026-04-30 18:46:36
last_warden_event
2026-04-30 18:46:36
rep
0.037797619047619045
reserved_range
0
Shodan's InternetDB
Open ports: 22, 53, 80, 110, 111, 143, 443, 587, 993, 995, 2082, 2083, 2086, 2087, 3306
Tags: starttls, database, self-signed
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:cpanel:whm, cpe:/a:oracle:mysql, cpe:/a:openbsd:openssh:8.9p1, cpe:/a:exim:exim:4.98.1, cpe:/a:apache:http_server, cpe:/a:cpanel:cpanel
ts_added
2026-04-30 17:27:46.878000
ts_last_update
2026-05-06 17:27:50.641000

Warden event timeline

DShield event timeline