IP address


.00031.58.183.57
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
31.58.183.57 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-07-18 02:50:00.789000
Was present on blacklist at: 2026-07-15 02:50, 2026-07-17 02:50, 2026-07-18 02:50
UCEPROTECT L1
31.58.183.57 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-07-23 23:45:00.434000
Was present on blacklist at: 2026-07-15 07:45, 2026-07-15 15:45, 2026-07-15 23:45, 2026-07-16 15:45, 2026-07-16 23:45, 2026-07-17 07:45, 2026-07-17 15:45, 2026-07-17 23:45, 2026-07-18 07:45, 2026-07-18 15:45, 2026-07-18 23:45, 2026-07-19 07:45, 2026-07-19 15:45, 2026-07-19 23:45, 2026-07-20 07:45, 2026-07-20 15:45, 2026-07-20 23:45, 2026-07-21 07:45, 2026-07-21 15:45, 2026-07-21 23:45, 2026-07-23 23:45

Threat categories

TLRoleCategoryDetails
37 src

Warden events (136)
2026-07-17
ReconScanning (node.368407): 38
ReconScanning (node.f90c6b): 13
2026-07-15
ReconScanning (node.368407): 62
ReconScanning (node.f90c6b): 23
DShield reports (IP summary, reports)
2026-07-16
Number of reports: 38
Distinct targets: 38
Origin AS
AS30058 - FDCSERVERS
BGP Prefix
31.58.183.0/24
geo
United Arab Emirates
🕑 Asia/Dubai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
31.56.0.0 - 31.59.255.255
last_activity
2026-07-17 13:30:13
last_warden_event
2026-07-17 13:30:13
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 443, 444
Tags:
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:9.6p1
ts_added
2026-07-15 01:17:17.977000
ts_last_update
2026-07-31 01:17:20.331000

Warden event timeline

DShield event timeline

Presence on blacklists