IP address


.18539.164.148.77
Shodan(more info)
Passive DNS
Tags: Scanner Login attempts

Threat categories

TLRoleCategoryDetails
38 src login protocol: ssh, telnet
port: 22, 23
29 src scan port: many

Warden events (10)
2026-04-27
ReconScanning (node.ce2b59): 1
2026-04-26
IntrusionUserCompromise (node.cfb4f7): 1
ReconScanning (node.ce2b59): 1
AttemptLogin (node.368407): 1
2026-04-25
ReconScanning (node.ce2b59): 1
2026-04-23
ReconScanning (node.ce2b59): 4
2026-04-22
ReconScanning (node.ce2b59): 1
Origin AS
AS24445 - CMNET-V4henan-AS-AP
BGP Prefix
39.164.148.0/24
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
39.128.0.0 - 39.191.255.255
last_activity
2026-04-27 13:40:24
last_warden_event
2026-04-27 13:40:24
rep
0.1849702380952381
reserved_range
0
ts_added
2026-04-22 18:17:55.442000
ts_last_update
2026-04-29 18:18:00.954000

Warden event timeline

DShield event timeline