IP address


.002194.48.248.156
Shodan(more info)
Passive DNS
Tags: Scanner

Threat categories

TLRoleCategoryDetails
50 src scan
25 src

Warden events (93)
2026-05-27
AnomalyTraffic (node.6a1878): 1
2026-05-19
ReconScanning (node.9c1411): 11
2026-05-18
ReconScanning (node.9c1411): 56
2026-05-17
ReconScanning (node.9c1411): 2
2026-05-16
ReconScanning (node.9c1411): 23
DShield reports (IP summary, reports)
2026-05-09
Number of reports: 208
Distinct targets: 21
2026-05-13
Number of reports: 110
Distinct targets: 9
2026-05-14
Number of reports: 745
Distinct targets: 62
2026-05-28
Number of reports: 80
Distinct targets: 6
2026-05-29
Number of reports: 54
Distinct targets: 4
2026-05-30
Number of reports: 145
Distinct targets: 9
2026-06-02
Number of reports: 120
Distinct targets: 8
2026-06-03
Number of reports: 120
Distinct targets: 8
2026-06-04
Number of reports: 260
Distinct targets: 17
Origin AS
AS200019 - AlexHost
BGP Prefix
194.48.248.0/24
geo
Bulgaria
🕑 Europe/Sofia
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
194.48.248.0 - 194.48.248.255
last_activity
2026-05-27 12:57:23
last_warden_event
2026-05-27 12:57:23
rep
0.0019283293593607143
reserved_range
0
Shodan's InternetDB
Open ports: 22
Tags: scanner
CPEs: cpe:/a:openbsd:openssh:8.9p1, cpe:/o:canonical:ubuntu_linux
ts_added
2026-05-10 05:00:32.538000
ts_last_update
2026-06-05 05:00:45.780000

Warden event timeline

DShield event timeline