IP address


.029123.1.189.232123001189232.static.ctinets.com
Shodan(more info)
Passive DNS
Tags: IP in hostname Static IP Scanner
IP blacklists
CI Army
123.1.189.232 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-05-09 02:50:00.993000
Was present on blacklist at: 2025-05-03 02:50, 2025-05-05 02:50, 2025-05-06 02:50, 2025-05-07 02:50, 2025-05-08 02:50, 2025-05-09 02:50
Warden events (24)
2025-05-03
IntrusionUserCompromise+AttemptExploit (node.310b2f): 2
2025-04-24
ReconScanning (node.368407): 12
ReconScanning (node.4dc198): 9
2025-04-14
IntrusionUserCompromise+AttemptExploit (node.90bbae): 1
DShield reports (IP summary, reports)
2025-05-02
Number of reports: 16
Distinct targets: 13
2025-05-05
Number of reports: 11
Distinct targets: 10
Origin AS
AS10103 - HKBN-AS-AP
BGP Prefix
123.1.189.0/24
geo
Hong Kong
🕑 Asia/Hong_Kong
hostname
123001189232.static.ctinets.com
hostname_class
['ip_in_hostname', 'static']
Address block ('inetnum' or 'NetRange' in whois database)
123.1.128.0 - 123.1.255.255
last_activity
2025-05-03 19:50:16.717000
last_warden_event
2025-05-03 19:50:16.717000
rep
0.02857142857142857
reserved_range
0
Shodan's InternetDB
Open ports: 21, 80, 135, 139, 443, 445, 5985, 8888, 11434
Tags: ai
CPEs: cpe:/o:microsoft:windows, cpe:/a:f5:nginx
ts_added
2025-04-14 23:37:35.490000
ts_last_update
2025-05-09 23:37:40.201000

Warden event timeline

DShield event timeline

Presence on blacklists