IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (2752)
- 2026-08-04
-
- IntrusionUserCompromise (node.cfb4f7): 923
- 2026-08-03
-
- IntrusionUserCompromise (node.cfb4f7): 1829
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 50 | src | login | protocol: ftp port: 21 |
- Origin AS
- AS55933 - CLOUDIE-AS-AP
- BGP Prefix
- 185.227.152.0/23
- geo
- South Korea
- 🕑 Asia/Seoul
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 185.227.152.0 - 185.227.155.255
- last_activity
- 2026-08-04 11:12:21
- last_warden_event
- 2026-08-04 11:12:21
- rep
- 0.0697364806698696
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 80
- Tags: –
- CPEs: cpe:/o:microsoft:windows
- ts_added
- 2026-08-03 07:25:46.651000
- ts_last_update
- 2026-08-05 07:25:50.214000
Warden event timeline
DShield event timeline
Presence on blacklists

