IP address


.000185.218.124.207vmi2232874.contaboserver.net
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
CI Army
185.218.124.207 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2024-10-07 02:50:00.963000
Was present on blacklist at: 2024-10-07 02:50
Warden events (24)
2024-10-06
ReconScanning (node.ce2b59): 4
ReconScanning (node.4dc198): 10
ReconScanning (node.368407): 10
DShield reports (IP summary, reports)
2024-10-06
Number of reports: 86
Distinct targets: 38
OTX pulses
[606d75c11c08ff94089a9430] 2021-04-07 09:05:05.353000 | Georgs Honeypot
Author name:georgengelmann
Pulse modified:2024-11-05 07:00:07.504000
Indicator created:2024-10-06 09:34:04
Indicator role:trojan
Indicator title:ServeMe Trojan from vmi2031231.contaboserver.net port 36680
Indicator expiration:2024-11-05 09:00:00
Origin AS
AS51167 - CONTABO
BGP Prefix
185.218.124.0/23
geo
Germany, Düsseldorf
🕑 Europe/Berlin
hostname
vmi2232874.contaboserver.net
Address block ('inetnum' or 'NetRange' in whois database)
185.218.124.0 - 185.218.127.255
last_activity
2024-11-05 08:42:42.975000
last_warden_event
2024-10-06 12:07:15
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 22
Tags:
CPEs: cpe:/a:openbsd:openssh
ts_added
2024-10-06 09:33:38.976000
ts_last_update
2024-11-05 09:33:40.411000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses