IP address


.022207.189.7.227
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
207.189.7.227 was recently listed on the CI Army blacklist, but currently it is not.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-09-24 02:50:00.768000
Was present on blacklist at: 2026-09-22 02:50, 2026-09-23 02:50, 2026-09-24 02:50
AbuseIPDB
207.189.7.227 was recently listed on the AbuseIPDB blacklist, but currently it is not.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-09-28 04:00:00.712000
Was present on blacklist at: 2026-09-27 04:00, 2026-09-28 04:00

Threat categories

TLRoleCategoryDetails
64 src scan port: 3389
28 src —

Warden events (26)
2026-09-21
ReconScanning (node.368407): 3
AnomalyTraffic (node.ce2b59): 4
AnomalyTraffic (node.6a1878): 4
ReconScanning (node.ce2b59): 2
ReconScanning (node.4dc198): 3
2026-09-20
ReconScanning (node.368407): 3
AnomalyTraffic (node.6a1878): 4
ReconScanning (node.4dc198): 3
DShield reports (IP summary, reports)
2026-09-20
Number of reports: 72
Distinct targets: 61
2026-09-21
Number of reports: 149
Distinct targets: 105
2026-09-22
Number of reports: 161
Distinct targets: 119
Origin AS
AS931 - AS-HYONIX-US
BGP Prefix
207.189.7.0/24
geo
United States, Secaucus
🕑 America/New_York
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
207.189.0.0 - 207.189.31.255
last_activity
2026-09-21 17:15:12
last_warden_event
2026-09-21 17:15:12
rep
0.021528515811468085
reserved_range
0
Shodan's InternetDB
Open ports: 3389
Tags: self-signed
CPEs: –
ts_added
2026-09-20 09:01:42.952000
ts_last_update
2026-10-02 09:01:50.250000

Warden event timeline

DShield event timeline

Presence on blacklists