IP address


--152.89.61.240cpanel16.v-sys.org
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[68b9d266a57b122998115dc6] 2025-09-04 17:54:46.837000 | Contagious Interview | North Korean Threat Actors Reveal Plans and Ops by Abusing Cyber Intel Platforms
Author name:AlienVault
Pulse modified:2025-09-04 21:17:33.594000
Indicator created:2025-09-04 17:54:49
Indicator role:None
Indicator title:
Indicator expiration:2025-10-04 17:00:00
Origin AS
AS30860 - YURTEH-AS
BGP Prefix
152.89.61.0/24
geo
Ukraine
🕑 Europe/Kyiv
hostname
cpanel16.v-sys.org
Address block ('inetnum' or 'NetRange' in whois database)
152.89.60.0 - 152.89.63.255
last_activity
2025-09-05 00:01:34.709000
reserved_range
0
Shodan's InternetDB
Open ports: 21, 22, 53, 80, 110, 111, 143, 443, 465, 587, 993, 995, 2079, 2082, 2083, 2086, 2087, 3306, 10050
Tags: open-dir, database, starttls
CPEs: cpe:/a:f5:nginx, cpe:/a:cpanel:cpanel, cpe:/a:oracle:mysql:8.0.42-cll-lve, cpe:/a:cpanel:whm, cpe:/a:exim:exim:4.98.2, cpe:/a:pureftpd:pure-ftpd
ts_added
2025-09-05 00:01:39.011000
ts_last_update
2025-09-10 00:01:43.982000

Warden event timeline

DShield event timeline

OTX pulses