IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (1724)
- 2026-05-31
-
- ReconScanning (node.ce2b59): 9
- ReconScanning (node.368407): 67
- ReconScanning (node.4dc198): 67
- 2026-05-30
-
- ReconScanning (node.9c1411): 41
- ReconScanning (node.ce2b59): 9
- ReconScanning (node.4dc198): 68
- ReconScanning (node.368407): 68
- 2026-05-29
-
- ReconScanning (node.9c1411): 35
- 2026-05-27
-
- ReconScanning (node.4dc198): 10
- ReconScanning (node.368407): 10
- ReconScanning (node.ce2b59): 2
- 2026-05-26
-
- ReconScanning (node.9c1411): 2
- 2026-05-25
-
- ReconScanning (node.9c1411): 2
- 2026-05-24
-
- ReconScanning (node.368407): 131
- ReconScanning (node.4dc198): 132
- ReconScanning (node.ce2b59): 15
- ReconScanning (node.9c1411): 2
- 2026-05-23
-
- ReconScanning (node.4dc198): 46
- ReconScanning (node.368407): 47
- ReconScanning (node.ce2b59): 7
- ReconScanning (node.9c1411): 2
- 2026-05-22
-
- ReconScanning (node.ce2b59): 22
- ReconScanning (node.368407): 73
- ReconScanning (node.4dc198): 73
- 2026-05-19
-
- ReconScanning (node.368407): 8
- ReconScanning (node.ce2b59): 3
- ReconScanning (node.4dc198): 7
- 2026-05-18
-
- ReconScanning (node.4dc198): 11
- ReconScanning (node.ce2b59): 6
- ReconScanning (node.368407): 10
- 2026-05-17
-
- ReconScanning (node.9c1411): 40
- 2026-05-16
-
- ReconScanning (node.9c1411): 83
- 2026-05-15
-
- ReconScanning (node.9c1411): 62
- 2026-05-12
-
- ReconScanning (node.4dc198): 175
- ReconScanning (node.368407): 175
- ReconScanning (node.ce2b59): 21
- 2026-05-11
-
- ReconScanning (node.ce2b59): 8
- ReconScanning (node.4dc198): 24
- ReconScanning (node.368407): 27
- 2026-05-04
-
- ReconScanning (node.ce2b59): 6
- AnomalyTraffic (node.ce2b59): 46
- 2026-05-03
-
- ReconScanning (node.ce2b59): 7
- ReconScanning (node.368407): 9
- ReconScanning (node.4dc198): 9
- 2026-05-02
-
- ReconScanning (node.ce2b59): 9
- ReconScanning (node.368407): 19
- ReconScanning (node.4dc198): 19
- DShield reports (IP summary, reports)
- 2026-05-02
- Number of reports: 713
- Distinct targets: 515
- 2026-05-03
- Number of reports: 713
- Distinct targets: 515
- 2026-05-04
- Number of reports: 293
- Distinct targets: 218
- 2026-05-05
- Number of reports: 402
- Distinct targets: 265
- 2026-05-12
- Number of reports: 290
- Distinct targets: 232
- 2026-05-13
- Number of reports: 2318
- Distinct targets: 1695
- 2026-05-18
- Number of reports: 552
- Distinct targets: 257
- 2026-05-19
- Number of reports: 552
- Distinct targets: 257
- 2026-05-20
- Number of reports: 232
- Distinct targets: 111
- 2026-05-23
- Number of reports: 1848
- Distinct targets: 1112
- 2026-05-24
- Number of reports: 1848
- Distinct targets: 1112
- 2026-05-25
- Number of reports: 6078
- Distinct targets: 3530
- 2026-05-28
- Number of reports: 283
- Distinct targets: 202
- 2026-05-31
- Number of reports: 1675
- Distinct targets: 1506
- 2026-06-01
- Number of reports: 714
- Distinct targets: 696
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 63 | src | scan | port: many |
| 31 | src | — |
- Origin AS
- AS36352 - AS-COLOCROSSING
- BGP Prefix
- 23.94.204.0/23
- geo
- United States, Elk Grove Village
- 🕑 America/Chicago
- hostname
- 23-94-204-22-host.colocrossing.com
- hostname_class
- ['ip_in_hostname']
- Address block ('inetnum' or 'NetRange' in whois database)
- 23.94.0.0 - 23.95.255.255
- last_activity
- 2026-05-31 22:42:49
- last_warden_event
- 2026-05-31 22:42:49
- rep
- 0.42588023622520454
- reserved_range
- 0
- ts_added
- 2026-05-02 17:19:22.740000
- ts_last_update
- 2026-06-03 17:19:30.259000
Warden event timeline
DShield event timeline
Presence on blacklists

