IP address


.100138.249.117.244
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
48 src scan port: 22, 23, 80, 443, 2222, 2375
44 src login protocol: telnet
port: 23

Warden events (8)
2026-04-05
ReconScanning (node.ce2b59): 5
IntrusionUserCompromise (node.cfb4f7): 3
Origin AS
AS57043 - HOSTKEY-AS
BGP Prefix
138.249.117.0/24
geo
Netherlands, Amsterdam-Zuidoost
🕑 Europe/Amsterdam
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
138.249.0.0 - 138.249.255.255
last_activity
2026-04-05 08:41:48
last_warden_event
2026-04-05 08:41:48
rep
0.099609375
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 53, 80, 443, 587, 993, 995, 8083
Tags: self-signed, starttls
CPEs: cpe:/a:f5:nginx, cpe:/a:openbsd:openssh:8.9p1
ts_added
2026-04-05 07:45:27.808000
ts_last_update
2026-04-05 09:05:30.790000

Warden event timeline

DShield event timeline