IP address
Shodan(more info)

Passive DNS

- Warden events (28)
- 2026-05-22
-
- ReconScanning (node.f90c6b): 2
- 2026-05-15
-
- ReconScanning (node.86eb21): 1
- 2026-05-04
-
- ReconScanning (node.86eb21): 1
- 2026-05-03
-
- ReconScanning (node.86eb21): 1
- 2026-04-24
-
- ReconScanning (node.86eb21): 1
- 2026-04-21
-
- ReconScanning (node.86eb21): 1
- 2026-04-19
-
- ReconScanning (node.86eb21): 1
- 2026-04-18
-
- ReconScanning (node.86eb21): 1
- 2026-04-16
-
- ReconScanning (node.86eb21): 1
- 2026-04-10
-
- ReconScanning (node.86eb21): 1
- 2026-04-08
-
- ReconScanning (node.f90c6b): 3
- 2026-04-05
-
- ReconScanning (node.86eb21): 1
- 2026-04-03
-
- ReconScanning (node.f90c6b): 3
- ReconScanning (node.86eb21): 1
- 2026-03-25
-
- ReconScanning (node.86eb21): 1
- 2026-03-21
-
- ReconScanning (node.86eb21): 1
- 2026-03-18
-
- ReconScanning (node.f90c6b): 2
- 2026-03-16
-
- ReconScanning (node.86eb21): 1
- 2026-03-15
-
- ReconScanning (node.86eb21): 1
- 2026-03-06
-
- ReconScanning (node.86eb21): 1
- 2026-03-03
-
- ReconScanning (node.86eb21): 2
- DShield reports (IP summary, reports)
- 2026-03-11
- Number of reports: 28
- Distinct targets: 5
- 2026-03-17
- Number of reports: 40
- Distinct targets: 6
- 2026-03-25
- Number of reports: 20
- Distinct targets: 3
- 2026-03-26
- Number of reports: 20
- Distinct targets: 3
- 2026-04-02
- Number of reports: 20
- Distinct targets: 3
- 2026-04-09
- Number of reports: 48
- Distinct targets: 7
- 2026-04-22
- Number of reports: 36
- Distinct targets: 5
- 2026-05-14
- Number of reports: 36
- Distinct targets: 5
- 2026-05-21
- Number of reports: 38
- Distinct targets: 6
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 43 | src | scan |
- Origin AS
- AS51852 - PLI-AS
- BGP Prefix
- 179.43.128.0/18
- bl
- []
- geo
- Switzerland, Zurich
- 🕑 Europe/Zurich
- hostname
- privatelayer-lugano
- Address block ('inetnum' or 'NetRange' in whois database)
- 179.43.128.0 - 179.43.191.255
- last_activity
- 2026-05-22 01:27:37
- last_warden_event
- 2026-05-22 01:27:37
- otx_pulses
- []
- rep
- 0.0018156030332591166
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 13, 19, 21, 22, 66, 70, 79, 80, 102, 110, 119, 122, 135, 175, 221, 311, 427, 502, 548, 554, 587, 636, 666, 675, 1014, 1024, 1181, 1311, 1433, 1443, 1457, 1604, 1723, 1800, 1833, 1911, 1925, 1953, 1957, 1965, 1979, 1988, 1995, 2000, 2008, 2049, 2067, 2082, 2086, 2090, 2154, 2181, 2222, 2248, 2376, 2379, 2423, 2506, 2572, 2995, 3006, 3012, 3021, 3047, 3067, 3092, 3097, 3099, 3143, 3163, 3175, 3178, 3179, 3193, 3260, 3269, 3299, 3306, 3311, 3337, 3389, 3402, 3556, 3580, 3672, 3689, 3749, 3780, 3790, 4040, 4063, 4064, 4150, 4242, 4282, 4321, 4369, 4432, 4434, 4437, 4444, 4457, 4477, 4499, 4506, 4523, 4541, 4664, 4786, 4840, 4848, 4899, 4924, 4933, 5000, 5005, 5009, 5105, 5130, 5209, 5222, 5229, 5232, 5240, 5248, 5254, 5256, 5271, 5351, 5431, 5432, 5444, 5556, 5569, 5601, 5608, 5858, 5986, 5987, 6001, 6080, 6134, 6352, 6432, 6650, 6653, 6666, 6668, 7001, 7011, 7018, 7171, 7173, 7283, 7443, 7474, 7548, 7770, 7777, 7779, 8000, 8001, 8023, 8024, 8026, 8043, 8049, 8058, 8069, 8090, 8112, 8123, 8126, 8135, 8139, 8156, 8187, 8188, 8198, 8203, 8316, 8333, 8383, 8407, 8408, 8409, 8410, 8419, 8431, 8433, 8454, 8480, 8524, 8540, 8554, 8570, 8571, 8575, 8583, 8622, 8637, 8723, 8728, 8766, 8801, 8818, 8833, 8858, 8880, 8883, 8884, 8916, 9004, 9019, 9039, 9040, 9051, 9055, 9091, 9100, 9115, 9151, 9160, 9178, 9182, 9200, 9208, 9246, 9249, 9333, 9353, 9455, 9513, 9550, 9595, 9600, 9861, 9869, 9930, 9939, 9981
- Tags: honeypot
- CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:8.9p1
- ts_added
- 2024-06-01 05:03:04.149000
- ts_last_update
- 2026-05-31 05:03:11.526000
Warden event timeline
DShield event timeline

