IP address


.124182.223.190.12
Shodan(more info)
Passive DNS
Tags:
IP blacklists
blocklist.de FTP
182.223.190.12 is listed on the blocklist.de FTP blacklist.

Description: Blocklist.de feed is a free and voluntary service<br>provided by a Fraud/Abuse-specialist. IPs performing attacks<br>on the Service FTP.
Type of feed: primary (feed detail page)

Last checked at: 2026-02-18 17:05:00.084000
Was present on blacklist at: 2026-02-16 23:05, 2026-02-17 05:05, 2026-02-17 11:05, 2026-02-17 17:05, 2026-02-17 23:05, 2026-02-18 05:05, 2026-02-18 11:05, 2026-02-18 17:05
Spamhaus PBL
182.223.190.12 is listed on the Spamhaus PBL blacklist.

Description: The Spamhaus PBL is a DNSBL database of end-user IP address ranges which should not be delivering unauthenticated SMTP email to any Internet mail server except those provided for specifically by an ISP for that customer's use.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-04-11 16:05:12.032000
Was present on blacklist at: 2026-01-17 16:05, 2026-01-24 16:05, 2026-01-31 16:05, 2026-02-07 16:05, 2026-02-14 16:05, 2026-02-21 16:05, 2026-02-28 16:05, 2026-03-09 08:45, 2026-03-14 16:05, 2026-03-21 16:05, 2026-03-28 16:05, 2026-04-04 16:05, 2026-04-11 16:05
Turris greylist
182.223.190.12 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2026-02-21 22:15:00.139000
Was present on blacklist at: 2026-01-20 22:15, 2026-02-04 22:15, 2026-02-06 22:15, 2026-02-15 22:15, 2026-02-17 22:15, 2026-02-21 22:15
Blocklist.net.ua
182.223.190.12 is listed on the Blocklist.net.ua blacklist.

Description: BlockList contains IP addresses that perform attacks,<br>send spam or brute force passwords to the blocking list.
Type of feed: primary (feed detail page)

Last checked at: 2026-03-01 23:15:01.554000
Was present on blacklist at: 2026-01-12 19:15, 2026-01-12 23:15, 2026-01-13 03:15, 2026-01-13 07:15, 2026-01-13 11:15, 2026-01-13 15:15, 2026-01-13 19:15, 2026-01-13 23:15, 2026-01-14 03:15, 2026-01-14 07:15, 2026-01-14 11:15, 2026-01-14 15:15, 2026-01-14 19:15, 2026-01-14 23:15, 2026-01-15 03:15, 2026-01-15 07:15, 2026-01-15 11:15, 2026-01-15 15:15, 2026-01-15 19:15, 2026-01-15 23:15, 2026-01-16 03:15, 2026-01-16 07:15, 2026-01-16 11:15, 2026-01-16 15:15, 2026-01-16 19:15, 2026-01-16 23:15, 2026-01-17 03:15, 2026-01-17 07:15, 2026-01-17 11:15, 2026-01-17 15:15, 2026-01-17 19:15, 2026-01-17 23:15, 2026-01-18 03:15, 2026-01-18 07:15, 2026-01-18 11:15, 2026-01-18 15:15, 2026-01-18 19:15, 2026-01-18 23:15, 2026-01-24 03:15, 2026-01-24 07:15, 2026-01-24 11:15, 2026-01-24 15:15, 2026-01-24 19:15, 2026-01-24 23:15, 2026-01-31 03:15, 2026-01-31 07:15, 2026-01-31 11:15, 2026-01-31 15:15, 2026-01-31 19:15, 2026-01-31 23:15, 2026-02-09 19:15, 2026-02-09 23:15, 2026-02-10 03:15, 2026-02-10 07:15, 2026-02-10 11:15, 2026-02-10 15:15, 2026-02-13 19:15, 2026-02-13 23:15, 2026-02-14 03:15, 2026-02-14 07:15, 2026-02-14 11:15, 2026-02-14 15:15, 2026-03-01 03:15, 2026-03-01 07:15, 2026-03-01 11:15, 2026-03-01 15:15, 2026-03-01 19:15, 2026-03-01 23:15

Threat categories

TLRoleCategoryDetails
50 src login protocol: ftp
port: 21

Warden events (17823)
2026-04-12
IntrusionUserCompromise (node.cfb4f7): 930
2026-04-04
IntrusionUserCompromise (node.cfb4f7): 740
2026-04-03
IntrusionUserCompromise (node.cfb4f7): 793
2026-03-30
IntrusionUserCompromise (node.cfb4f7): 930
2026-03-29
IntrusionUserCompromise (node.cfb4f7): 2
2026-03-27
IntrusionUserCompromise (node.cfb4f7): 1698
2026-03-24
IntrusionUserCompromise (node.cfb4f7): 1160
2026-03-17
IntrusionUserCompromise (node.cfb4f7): 4
2026-03-16
IntrusionUserCompromise (node.cfb4f7): 930
2026-03-15
IntrusionUserCompromise (node.cfb4f7): 930
2026-03-11
IntrusionUserCompromise (node.cfb4f7): 6
2026-03-09
IntrusionUserCompromise (node.cfb4f7): 751
2026-03-08
IntrusionUserCompromise (node.cfb4f7): 930
2026-02-28
IntrusionUserCompromise (node.cfb4f7): 345
2026-02-27
IntrusionUserCompromise (node.cfb4f7): 313
2026-02-25
IntrusionUserCompromise (node.cfb4f7): 27
2026-02-20
IntrusionUserCompromise (node.cfb4f7): 638
2026-02-18
IntrusionUserCompromise (node.cfb4f7): 433
2026-02-16
IntrusionUserCompromise (node.cfb4f7): 449
2026-02-13
IntrusionUserCompromise (node.cfb4f7): 480
2026-02-12
IntrusionUserCompromise (node.cfb4f7): 399
2026-02-10
IntrusionUserCompromise (node.cfb4f7): 377
2026-02-07
IntrusionUserCompromise (node.cfb4f7): 256
2026-02-04
IntrusionUserCompromise (node.cfb4f7): 485
2026-02-03
IntrusionUserCompromise (node.cfb4f7): 292
2026-02-01
IntrusionUserCompromise (node.cfb4f7): 654
2026-01-27
IntrusionUserCompromise (node.cfb4f7): 573
2026-01-19
IntrusionUserCompromise (node.cfb4f7): 549
2026-01-18
IntrusionUserCompromise (node.cfb4f7): 523
2026-01-15
IntrusionUserCompromise (node.cfb4f7): 1226
Origin AS
AS17858 - POWERVIS-AS-KR POWERVIS-AS-KR-KR
BGP Prefix
182.220.0.0/14
dshield
[]
geo
South Korea
🕑 Asia/Seoul
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
182.208.0.0 - 182.223.255.255
last_activity
2026-04-12 08:48:39
last_warden_event
2026-04-12 08:48:39
rep
0.12380952380952381
reserved_range
0
Shodan's InternetDB
Open ports: 25008
Tags:
CPEs:
ts_added
2024-05-25 16:05:04.578000
ts_last_update
2026-04-12 16:05:12.273000

Warden event timeline

DShield event timeline

Presence on blacklists