IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (3652)
- 2025-07-03
-
- ReconScanning (node.368407): 25
- ReconScanning (node.4dc198): 25
- ReconScanning (node.9c1411): 15
- AnomalyTraffic (node.ffe95c): 9
- AnomalyTraffic (node.86dac8): 7
- 2025-05-26
-
- ReconScanning (node.4dc198): 2
- 2025-05-12
-
- AnomalyTraffic (node.ffe95c): 9
- ReconScanning (node.368407): 7
- ReconScanning (node.4dc198): 13
- IntrusionUserCompromise (node.cfb4f7): 22
- AnomalyTraffic (node.86dac8): 5
- 2025-05-10
-
- ReconScanning (node.368407): 12
- ReconScanning (node.4dc198): 14
- IntrusionUserCompromise (node.cfb4f7): 25
- AnomalyTraffic (node.ffe95c): 5
- 2025-05-09
-
- AnomalyTraffic (node.86dac8): 10
- AnomalyTraffic (node.ffe95c): 10
- ReconScanning (node.4dc198): 47
- ReconScanning (node.368407): 22
- 2025-05-08
-
- ReconScanning (node.368407): 42
- ReconScanning (node.4dc198): 52
- AnomalyTraffic (node.ffe95c): 17
- AnomalyTraffic (node.86dac8): 13
- IntrusionUserCompromise (node.cfb4f7): 187
- 2025-05-07
-
- AnomalyTraffic (node.86dac8): 13
- AnomalyTraffic (node.ffe95c): 13
- ReconScanning (node.4dc198): 27
- ReconScanning (node.368407): 53
- IntrusionUserCompromise (node.cfb4f7): 1267
- 2025-05-06
-
- AnomalyTraffic (node.ffe95c): 43
- AnomalyTraffic (node.86dac8): 28
- ReconScanning (node.4dc198): 93
- ReconScanning (node.368407): 16
- 2025-05-05
-
- AnomalyTraffic (node.ffe95c): 38
- ReconScanning (node.4dc198): 80
- IntrusionUserCompromise (node.cfb4f7): 48
- AnomalyTraffic (node.86dac8): 26
- ReconScanning (node.368407): 8
- 2025-05-04
-
- ReconScanning (node.4dc198): 33
- AnomalyTraffic (node.ffe95c): 24
- ReconScanning (node.368407): 9
- IntrusionUserCompromise (node.cfb4f7): 16
- AnomalyTraffic (node.86dac8): 17
- 2025-04-26
-
- ReconScanning (node.4dc198): 1
- ReconScanning (node.368407): 1
- 2025-04-25
-
- ReconScanning (node.368407): 2
- ReconScanning (node.4dc198): 2
- 2025-04-23
-
- ReconScanning (node.4dc198): 27
- ReconScanning (node.368407): 26
- IntrusionUserCompromise (node.cfb4f7): 51
- AnomalyTraffic (node.ffe95c): 7
- 2025-04-20
-
- ReconScanning (node.4dc198): 31
- ReconScanning (node.368407): 30
- IntrusionUserCompromise (node.cfb4f7): 45
- AnomalyTraffic (node.86dac8): 4
- AnomalyTraffic (node.ffe95c): 9
- 2025-04-15
-
- ReconScanning (node.4dc198): 150
- IntrusionUserCompromise (node.cfb4f7): 322
- ReconScanning (node.368407): 44
- 2025-04-14
-
- ReconScanning (node.4dc198): 83
- ReconScanning (node.368407): 78
- IntrusionUserCompromise (node.cfb4f7): 291
- ReconScanning (node.9c1411): 1
- DShield reports (IP summary, reports)
- 2025-04-14
- Number of reports: 2151
- Distinct targets: 371
- 2025-04-15
- Number of reports: 718
- Distinct targets: 382
- 2025-04-20
- Number of reports: 489
- Distinct targets: 324
- 2025-04-23
- Number of reports: 535
- Distinct targets: 331
- 2025-04-25
- Number of reports: 33
- Distinct targets: 27
- 2025-05-04
- Number of reports: 547
- Distinct targets: 207
- 2025-05-05
- Number of reports: 902
- Distinct targets: 379
- 2025-05-06
- Number of reports: 1823
- Distinct targets: 607
- 2025-05-07
- Number of reports: 3417
- Distinct targets: 715
- 2025-05-08
- Number of reports: 1151
- Distinct targets: 518
- 2025-05-09
- Number of reports: 759
- Distinct targets: 479
- 2025-05-10
- Number of reports: 177
- Distinct targets: 56
- 2025-05-12
- Number of reports: 272
- Distinct targets: 142
- 2025-07-03
- Number of reports: 1916
- Distinct targets: 286
- OTX pulses
-
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name: david3 Pulse modified: 2025-06-07 15:21:15.593000 Indicator created: 2025-05-08 17:30:25 Indicator role: scanning_host Indicator title: 404 NOT FOUND Indicator expiration: 2025-08-06 00:00:00
- Origin AS
- AS201814 - PL-SKYTECH-AS
- BGP Prefix
- 149.50.96.0/20
- geo
- Poland, Warsaw
- 🕑 Europe/Warsaw
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 149.50.0.0 - 149.50.255.255
- last_activity
- 2025-07-03 22:33:47
- last_warden_event
- 2025-07-03 22:33:47
- rep
- 0.0738095238095238
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 22, 5000, 5001
- Tags: –
- CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:8.9p1
- ts_added
- 2025-04-14 00:14:26.383000
- ts_last_update
- 2025-07-09 00:14:30.338000
Warden event timeline
DShield event timeline
Presence on blacklists
OTX pulses