IP address


.04889.238.167.150
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
42 src scan port: 1111, 3125, 4153, 8081, 8082, 8085, 8181, 8888
25 src

Warden events (2)
2026-03-01
ReconScanning (node.9c1411): 1
2026-02-25
AnomalyTraffic (node.ffe95c): 1
DShield reports (IP summary, reports)
2026-03-02
Number of reports: 50
Distinct targets: 13
2026-03-03
Number of reports: 29
Distinct targets: 4
Origin AS
AS9009 - M247
BGP Prefix
89.238.167.0/24
geo
United Kingdom, Manchester
🕑 Europe/London
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
89.238.128.0 - 89.238.191.255
last_activity
2026-03-01 09:36:14
last_warden_event
2026-03-01 09:36:14
rep
0.04761904761904761
reserved_range
0
ts_added
2026-02-25 20:51:16.279000
ts_last_update
2026-03-04 05:06:18.296000

Warden event timeline

DShield event timeline