IP address
Shodan(more info)

Passive DNS

- DShield reports (IP summary, reports)
- 2026-03-12
- Number of reports: 41
- Distinct targets: 25
- 2026-03-13
- Number of reports: 41
- Distinct targets: 25
- 2026-03-14
- Number of reports: 62
- Distinct targets: 49
- 2026-03-15
- Number of reports: 66
- Distinct targets: 47
- 2026-03-16
- Number of reports: 72
- Distinct targets: 45
- 2026-03-17
- Number of reports: 58
- Distinct targets: 47
- 2026-03-18
- Number of reports: 64
- Distinct targets: 46
- 2026-03-19
- Number of reports: 78
- Distinct targets: 48
- 2026-03-20
- Number of reports: 68
- Distinct targets: 47
- 2026-03-21
- Number of reports: 75
- Distinct targets: 47
- 2026-03-22
- Number of reports: 72
- Distinct targets: 48
- 2026-03-23
- Number of reports: 70
- Distinct targets: 47
- 2026-03-24
- Number of reports: 70
- Distinct targets: 47
- 2026-03-25
- Number of reports: 43
- Distinct targets: 29
- 2026-03-26
- Number of reports: 43
- Distinct targets: 29
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 50 | src | scan |
- Origin AS
- AS4766 - KIXS-AS-KR KIXS-AS-KR-KR
- BGP Prefix
- 61.72.0.0/13
- geo
- South Korea, Geumcheon-gu
- 🕑 Asia/Seoul
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 61.72.0.0 - 61.75.255.255
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 22, 80, 1433, 3690, 8080
- Tags: database, eol-product
- CPEs: cpe:/a:apache:http_server:2.4.58, cpe:/a:apache:subversion, cpe:/a:oracle:jre, cpe:/a:f5:nginx:1.26.1, cpe:/a:openbsd:openssh:7.4, cpe:/a:facebook:react, cpe:/a:microsoft:sql_server:15.0.4375.0, cpe:/a:apache:tomcat
- ts_added
- 2026-03-13 05:02:13.625000
- ts_last_update
- 2026-04-07 05:02:39.676000
Warden event timeline
DShield event timeline

