IP address


.166212.127.78.106
Shodan(more info)
Passive DNS
Tags: Scanner

Threat categories

TLRoleCategoryDetails
44 src scan port: 0

Warden events (23)
2026-04-06
ReconScanning (node.ce2b59): 1
2026-04-05
ReconScanning (node.ce2b59): 4
2026-03-31
ReconScanning (node.9c1411): 2
ReconScanning (node.ce2b59): 2
2026-03-29
ReconScanning (node.ce2b59): 2
2026-03-22
ReconScanning (node.9c1411): 2
2026-03-21
ReconScanning (node.9c1411): 2
2026-03-11
ReconScanning (node.9c1411): 1
2026-02-25
ReconScanning (node.9c1411): 1
2026-02-14
ReconScanning (node.9c1411): 1
2026-02-10
ReconScanning (node.9c1411): 2
2026-02-08
ReconScanning (node.9c1411): 1
2026-02-06
ReconScanning (node.9c1411): 2
DShield reports (IP summary, reports)
2026-03-28
Number of reports: 13
Distinct targets: 13
2026-03-29
Number of reports: 13
Distinct targets: 13
Origin AS
AS35179 - KORBANK-AS
BGP Prefix
212.127.78.0/24
geo
Poland, Wroclaw
🕑 Europe/Warsaw
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
212.127.64.0 - 212.127.95.255
last_activity
2026-04-06 02:51:45
last_warden_event
2026-04-06 02:51:45
rep
0.16636904761904764
reserved_range
0
Shodan's InternetDB
Open ports: 22, 111, 8000
Tags:
CPEs: cpe:/a:openbsd:openssh:8.0
ts_added
2026-02-06 12:27:25.331000
ts_last_update
2026-04-06 12:27:30.118000

Warden event timeline

DShield event timeline