IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (31930)
- 2026-04-02
-
- IntrusionUserCompromise (node.cfb4f7): 419
- 2026-03-31
-
- IntrusionUserCompromise (node.cfb4f7): 1860
- 2026-03-26
-
- IntrusionUserCompromise (node.cfb4f7): 781
- 2026-03-22
-
- IntrusionUserCompromise (node.cfb4f7): 930
- 2026-03-20
-
- IntrusionUserCompromise (node.cfb4f7): 2440
- 2026-03-18
-
- IntrusionUserCompromise (node.cfb4f7): 8
- 2026-03-16
-
- IntrusionUserCompromise (node.cfb4f7): 929
- 2026-03-15
-
- IntrusionUserCompromise (node.cfb4f7): 4
- 2026-03-14
-
- IntrusionUserCompromise (node.cfb4f7): 836
- 2026-03-13
-
- IntrusionUserCompromise (node.cfb4f7): 930
- 2026-03-11
-
- IntrusionUserCompromise (node.cfb4f7): 935
- 2026-03-10
-
- IntrusionUserCompromise (node.cfb4f7): 5
- 2026-03-09
-
- IntrusionUserCompromise (node.cfb4f7): 1037
- 2026-03-07
-
- IntrusionUserCompromise (node.cfb4f7): 5
- 2026-03-06
-
- IntrusionUserCompromise (node.cfb4f7): 620
- 2026-03-05
-
- IntrusionUserCompromise (node.cfb4f7): 6
- 2026-03-04
-
- IntrusionUserCompromise (node.cfb4f7): 517
- 2026-03-03
-
- IntrusionUserCompromise (node.cfb4f7): 306
- 2026-03-02
-
- IntrusionUserCompromise (node.cfb4f7): 1098
- 2026-03-01
-
- IntrusionUserCompromise (node.cfb4f7): 641
- 2026-02-28
-
- IntrusionUserCompromise (node.cfb4f7): 299
- 2026-02-27
-
- IntrusionUserCompromise (node.cfb4f7): 941
- 2026-02-26
-
- IntrusionUserCompromise (node.cfb4f7): 264
- 2026-02-25
-
- IntrusionUserCompromise (node.cfb4f7): 292
- 2026-02-24
-
- IntrusionUserCompromise (node.cfb4f7): 462
- 2026-02-23
-
- IntrusionUserCompromise (node.cfb4f7): 126
- 2026-02-22
-
- IntrusionUserCompromise (node.cfb4f7): 1048
- 2026-02-21
-
- IntrusionUserCompromise (node.cfb4f7): 634
- 2026-02-20
-
- IntrusionUserCompromise (node.cfb4f7): 651
- 2026-01-27
-
- IntrusionUserCompromise (node.cfb4f7): 609
- 2026-01-26
-
- IntrusionUserCompromise (node.cfb4f7): 1701
- 2026-01-25
-
- IntrusionUserCompromise (node.cfb4f7): 909
- 2026-01-23
-
- IntrusionUserCompromise (node.cfb4f7): 1212
- 2026-01-22
-
- IntrusionUserCompromise (node.cfb4f7): 845
- 2026-01-21
-
- IntrusionUserCompromise (node.cfb4f7): 564
- 2026-01-20
-
- IntrusionUserCompromise (node.cfb4f7): 460
- 2026-01-19
-
- IntrusionUserCompromise (node.cfb4f7): 306
- 2026-01-17
-
- IntrusionUserCompromise (node.cfb4f7): 1033
- 2026-01-15
-
- IntrusionUserCompromise (node.cfb4f7): 535
- 2026-01-14
-
- IntrusionUserCompromise (node.cfb4f7): 2206
- 2026-01-12
-
- IntrusionUserCompromise (node.cfb4f7): 1867
- 2026-01-08
-
- IntrusionUserCompromise (node.cfb4f7): 659
- DShield reports (IP summary, reports)
- 2026-01-23
- Number of reports: 10
- Distinct targets: 5
- 2026-01-24
- Number of reports: 10
- Distinct targets: 5
- 2026-03-09
- Number of reports: 22
- Distinct targets: 3
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 50 | src | login | protocol: ftp port: 21 |
- Origin AS
- AS4766 - KIXS-AS-KR KIXS-AS-KR-KR
- BGP Prefix
- 119.200.0.0/13
- geo
- South Korea, Anyang-si
- 🕑 Asia/Seoul
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 119.192.0.0 - 119.223.255.255
- last_activity
- 2026-04-02 03:39:16
- last_warden_event
- 2026-04-02 03:39:16
- rep
- 0.09999999999999999
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 1433, 3389, 5357, 10243
- Tags: self-signed, eol-product, eol-os, database
- CPEs: cpe:/a:microsoft:sql_server:9.0.1399.0
- ts_added
- 2025-06-25 21:17:33.835000
- ts_last_update
- 2026-04-06 21:17:40.067000
Warden event timeline
DShield event timeline
Presence on blacklists

