IP address
Shodan(more info)

Passive DNS

- Warden events (27)
- 2026-06-14
-
- ReconScanning (node.86eb21): 1
- 2026-06-13
-
- ReconScanning (node.86eb21): 1
- 2026-06-08
-
- ReconScanning (node.86eb21): 1
- 2026-05-22
-
- ReconScanning (node.f90c6b): 2
- 2026-05-15
-
- ReconScanning (node.86eb21): 1
- 2026-05-04
-
- ReconScanning (node.86eb21): 1
- 2026-05-03
-
- ReconScanning (node.86eb21): 1
- 2026-04-24
-
- ReconScanning (node.86eb21): 1
- 2026-04-21
-
- ReconScanning (node.86eb21): 1
- 2026-04-19
-
- ReconScanning (node.86eb21): 1
- 2026-04-18
-
- ReconScanning (node.86eb21): 1
- 2026-04-16
-
- ReconScanning (node.86eb21): 1
- 2026-04-10
-
- ReconScanning (node.86eb21): 1
- 2026-04-08
-
- ReconScanning (node.f90c6b): 3
- 2026-04-05
-
- ReconScanning (node.86eb21): 1
- 2026-04-03
-
- ReconScanning (node.f90c6b): 3
- ReconScanning (node.86eb21): 1
- 2026-03-25
-
- ReconScanning (node.86eb21): 1
- 2026-03-21
-
- ReconScanning (node.86eb21): 1
- 2026-03-18
-
- ReconScanning (node.f90c6b): 2
- 2026-03-16
-
- ReconScanning (node.86eb21): 1
- DShield reports (IP summary, reports)
- 2026-03-17
- Number of reports: 40
- Distinct targets: 6
- 2026-03-25
- Number of reports: 20
- Distinct targets: 3
- 2026-03-26
- Number of reports: 20
- Distinct targets: 3
- 2026-04-02
- Number of reports: 20
- Distinct targets: 3
- 2026-04-09
- Number of reports: 48
- Distinct targets: 7
- 2026-04-22
- Number of reports: 36
- Distinct targets: 5
- 2026-05-14
- Number of reports: 36
- Distinct targets: 5
- 2026-05-21
- Number of reports: 38
- Distinct targets: 6
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 25 | src | scan |
- Origin AS
- AS51852 - PLI-AS
- BGP Prefix
- 179.43.128.0/18
- bl
- []
- geo
- Switzerland, Zurich
- 🕑 Europe/Zurich
- hostname
- privatelayer-lugano
- Address block ('inetnum' or 'NetRange' in whois database)
- 179.43.128.0 - 179.43.191.255
- last_activity
- 2026-06-14 03:14:22
- last_warden_event
- 2026-06-14 03:14:22
- otx_pulses
- []
- rep
- 0.006538060887697372
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 11, 13, 19, 21, 22, 25, 66, 70, 79, 80, 86, 102, 104, 119, 122, 135, 175, 221, 263, 311, 389, 427, 443, 465, 502, 548, 554, 636, 666, 806, 902, 1014, 1024, 1193, 1311, 1433, 1456, 1457, 1500, 1599, 1604, 1723, 1741, 1800, 1833, 1911, 1925, 1957, 1965, 1972, 1979, 1988, 1995, 2000, 2008, 2049, 2067, 2082, 2086, 2090, 2122, 2154, 2181, 2205, 2222, 2248, 2250, 2327, 2375, 2376, 2379, 2423, 2572, 2951, 3005, 3006, 3012, 3021, 3047, 3067, 3092, 3109, 3110, 3121, 3143, 3163, 3169, 3175, 3179, 3193, 3269, 3299, 3311, 3333, 3337, 3389, 3402, 3556, 3580, 3672, 3689, 3749, 3790, 4040, 4063, 4064, 4150, 4242, 4321, 4369, 4432, 4434, 4435, 4437, 4444, 4457, 4499, 4506, 4523, 4782, 4786, 4840, 4848, 4924, 5000, 5005, 5006, 5009, 5105, 5209, 5222, 5229, 5230, 5232, 5240, 5246, 5248, 5254, 5271, 5351, 5432, 5435, 5444, 5556, 5569, 5594, 5601, 5608, 5858, 5990, 6001, 6080, 6081, 6352, 6432, 6650, 6653, 6666, 7001, 7011, 7018, 7171, 7283, 7348, 7474, 7548, 7700, 7770, 7777, 7799, 8000, 8001, 8023, 8026, 8043, 8058, 8069, 8083, 8087, 8098, 8101, 8103, 8112, 8123, 8126, 8135, 8139, 8187, 8188, 8198, 8199, 8200, 8203, 8333, 8401, 8407, 8408, 8409, 8410, 8431, 8433, 8445, 8454, 8480, 8504, 8524, 8570, 8571, 8575, 8622, 8637, 8724, 8728, 8766, 8800, 8801, 8808, 8818, 8833, 8858, 8860, 8880, 8883, 8884, 8916, 9000, 9004, 9019, 9025, 9039, 9051, 9055, 9084, 9090, 9091, 9101, 9111, 9115, 9134, 9151, 9152, 9160, 9182, 9191, 9200, 9208, 9246, 9249, 9333, 9353, 9455, 9513, 9550, 9595, 9600, 9761, 9861, 9869, 9898, 9922, 9930, 9939, 9981
- Tags: honeypot
- CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:8.9p1
- ts_added
- 2024-06-01 05:03:04.149000
- ts_last_update
- 2026-06-14 05:03:11.592000
Warden event timeline
DShield event timeline

