IP address


.106171.22.18.133
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
AbuseIPDB
171.22.18.133 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-10-12 04:00:00.594000
Was present on blacklist at: 2025-10-05 04:00, 2025-10-12 04:00
CI Army
171.22.18.133 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-10-13 02:50:00.935000
Was present on blacklist at: 2025-10-12 02:50, 2025-10-13 02:50
Warden events (118)
2025-10-12
AnomalyTraffic (node.86dac8): 22
AnomalyTraffic (node.ffe95c): 13
2025-10-05
AnomalyTraffic (node.ffe95c): 4
ReconScanning (node.9c1411): 14
AnomalyTraffic (node.86dac8): 52
2025-10-04
ReconScanning (node.9c1411): 13
DShield reports (IP summary, reports)
2025-10-04
Number of reports: 202
Distinct targets: 21
2025-10-05
Number of reports: 202
Distinct targets: 21
2025-10-06
Number of reports: 1239
Distinct targets: 28
2025-10-11
Number of reports: 1289
Distinct targets: 28
2025-10-12
Number of reports: 1289
Distinct targets: 28
Origin AS
AS215691 - HOSTEALO
BGP Prefix
171.22.18.0/24
geo
Germany, Frankfurt am Main
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
171.22.18.0 - 171.22.18.255
last_activity
2025-10-12 16:10:00
last_warden_event
2025-10-12 16:10:00
rep
0.10595121837797619
reserved_range
0
Shodan's InternetDB
Open ports: 5357, 10022, 30120
Tags:
CPEs:
ts_added
2025-10-05 04:03:04.164000
ts_last_update
2025-10-16 08:58:14.047000

Warden event timeline

DShield event timeline

Presence on blacklists