IP address


--207.189.164.137
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[68b9d266a57b122998115dc6] 2025-09-04 17:54:46.837000 | Contagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel Platforms
Author name:AlienVault
Pulse modified:2025-09-10 18:58:13.114000
Indicator created:2025-09-04 17:54:49
Indicator role:None
Indicator title:
Indicator expiration:2025-10-04 17:00:00
Origin AS
AS394177 - SHIFT-HOSTING-LLC
BGP Prefix
207.189.164.0/24
geo
United States, Dallas
🕑 America/Chicago
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
207.189.164.0 - 207.189.164.255
last_activity
2025-09-10 20:08:27.919000
reserved_range
0
Shodan's InternetDB
Open ports: 80, 135, 137, 445, 3389, 5985
Tags: self-signed
CPEs: cpe:/o:microsoft:windows, cpe:/a:microsoft:internet_information_services:10.0
ts_added
2025-09-05 00:01:35.696000
ts_last_update
2025-09-18 00:01:42.981000

Warden event timeline

DShield event timeline

OTX pulses