IP address


.000104.192.0.206yuvaraja
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
DataPlane TELNET login
104.192.0.206 is listed on the DataPlane TELNET login blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs trying<br>an unsolicited login via TELNET password authentication.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-13 18:10:03.066000
Was present on blacklist at: 2025-04-06 18:10, 2025-04-07 02:10, 2025-04-07 06:10, 2025-04-07 14:10, 2025-04-07 18:10, 2025-04-08 02:10, 2025-04-08 06:10, 2025-04-08 14:10, 2025-04-08 18:10, 2025-04-09 02:10, 2025-04-09 06:10, 2025-04-09 14:10, 2025-04-09 18:10, 2025-04-10 02:10, 2025-04-10 06:10, 2025-04-10 14:10, 2025-04-10 18:10, 2025-04-11 02:10, 2025-04-11 06:10, 2025-04-11 14:10, 2025-04-11 18:10, 2025-04-12 02:10, 2025-04-12 06:10, 2025-04-12 14:10, 2025-04-12 18:10, 2025-04-13 06:10, 2025-04-13 14:10, 2025-04-13 18:10
Turris greylist
104.192.0.206 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-04-07 21:15:00.208000
Was present on blacklist at: 2025-04-07 21:15
Warden events (97)
2025-04-06
ReconScanning (node.9c1411): 21
2025-02-13
ReconScanning (node.368407): 25
ReconScanning (node.4dc198): 25
IntrusionUserCompromise (node.cfb4f7): 12
2025-02-12
ReconScanning (node.368407): 7
ReconScanning (node.4dc198): 7
DShield reports (IP summary, reports)
2025-02-12
Number of reports: 85
Distinct targets: 63
2025-02-13
Number of reports: 295
Distinct targets: 172
2025-04-06
Number of reports: 4451
Distinct targets: 31
OTX pulses
[606d75c11c08ff94089a9430] 2021-04-07 09:05:05.353000 | Georgs Honeypot
Author name:georgengelmann
Pulse modified:2025-03-14 23:50:22.859000
Indicator created:2025-02-13 01:50:06
Indicator role:bruteforce
Indicator title:SSH intrusion attempt from yuvaraja port 59017
Indicator expiration:2025-03-15 01:00:00
Origin AS
AS27176 - DATAWAGON
BGP Prefix
104.192.0.0/22
geo
United States
🕑 America/Chicago
hostname
yuvaraja
Address block ('inetnum' or 'NetRange' in whois database)
104.192.0.0 - 104.192.3.255
last_activity
2025-04-06 18:08:45
last_warden_event
2025-04-06 18:08:45
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 3306, 3389
Tags: self-signed, database
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:9.6p1, cpe:/a:apache:http_server:2.4.58, cpe:/a:mariadb:mariadb:11.6.2-MariaDB
ts_added
2025-02-12 23:28:48.615000
ts_last_update
2025-04-29 23:28:50.363000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses