IP address


.35892.204.254.217
Shodan(more info)
Passive DNS
Tags: Scanner Login attempts
IP blacklists
CI Army
92.204.254.217 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2024-11-17 03:50:00.985000
Was present on blacklist at: 2024-11-13 03:50, 2024-11-14 03:50, 2024-11-15 03:50, 2024-11-16 03:50, 2024-11-17 03:50
Warden events (201)
2024-11-17
ReconScanning (node.ce2b59): 28
2024-11-16
ReconScanning (node.ce2b59): 32
AttemptLogin (node.4dc198): 58
2024-11-15
ReconScanning (node.ce2b59): 29
2024-11-14
ReconScanning (node.ce2b59): 5
2024-11-13
ReconScanning (node.ce2b59): 33
2024-11-12
ReconScanning (node.ce2b59): 16
DShield reports (IP summary, reports)
2024-11-12
Number of reports: 18
Distinct targets: 16
2024-11-13
Number of reports: 119
Distinct targets: 86
2024-11-14
Number of reports: 100
Distinct targets: 73
2024-11-15
Number of reports: 89
Distinct targets: 63
2024-11-16
Number of reports: 85
Distinct targets: 67
Origin AS
AS29066 - VELIANET-AS
BGP Prefix
92.204.240.0/20
geo
France, Strasbourg
🕑 Europe/Paris
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
92.204.240.0 - 92.204.255.255
last_activity
2024-11-17 21:04:24
last_warden_event
2024-11-17 21:04:24
rep
0.3578862508138021
reserved_range
0
Shodan's InternetDB
Open ports: 22, 123
Tags:
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:9.6p1
ts_added
2024-11-12 04:22:43.067000
ts_last_update
2024-11-17 21:22:07.013000

Warden event timeline

DShield event timeline

Presence on blacklists