IP address


.48549.143.16.204
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
AbuseIPDB
49.143.16.204 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-04-02 04:00:00.574000
Was present on blacklist at: 2026-04-02 04:00

Threat categories

TLRoleCategoryDetails
52 src scan port: 23
25 src

Warden events (226)
2026-04-08
ReconScanning (node.ce2b59): 21
2026-04-07
ReconScanning (node.ce2b59): 30
2026-04-06
ReconScanning (node.ce2b59): 30
2026-04-05
ReconScanning (node.ce2b59): 32
2026-04-04
ReconScanning (node.ce2b59): 30
2026-04-03
ReconScanning (node.ce2b59): 12
2026-04-02
ReconScanning (node.ce2b59): 9
2026-04-01
ReconScanning (node.ce2b59): 12
2026-03-31
ReconScanning (node.ce2b59): 24
2026-03-30
ReconScanning (node.ce2b59): 10
2026-03-29
ReconScanning (node.ce2b59): 8
2026-03-28
ReconScanning (node.ce2b59): 8
DShield reports (IP summary, reports)
2026-04-04
Number of reports: 11
Distinct targets: 8
Origin AS
AS10175 - HCNKUMHO-AS-KR HCNKUMHO-AS-KR-KR
BGP Prefix
49.143.16.0/22
geo
South Korea
🕑 Asia/Seoul
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
49.143.0.0 - 49.143.127.255
last_activity
2026-04-08 15:33:51
last_warden_event
2026-04-08 15:33:51
rep
0.4854678199404762
reserved_range
0
Shodan's InternetDB
Open ports: 23, 161
Tags:
CPEs:
ts_added
2026-03-28 07:34:27.573000
ts_last_update
2026-04-08 15:38:49.265000

Warden event timeline

DShield event timeline

Presence on blacklists