IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (11242)
- 2025-11-05
-
- AnomalyTraffic (node.ffe95c): 56
- ReconScanning (node.9c1411): 28
- ReconScanning (node.4dc198): 206
- ReconScanning (node.368407): 140
- IntrusionUserCompromise (node.cfb4f7): 1968
- 2025-11-04
-
- ReconScanning (node.368407): 267
- ReconScanning (node.4dc198): 285
- AnomalyTraffic (node.ffe95c): 79
- IntrusionUserCompromise (node.cfb4f7): 8
- ReconScanning (node.9c1411): 2
- 2025-11-03
-
- ReconScanning (node.368407): 250
- ReconScanning (node.4dc198): 284
- AnomalyTraffic (node.ffe95c): 92
- IntrusionUserCompromise (node.cfb4f7): 440
- 2025-11-02
-
- ReconScanning (node.368407): 229
- ReconScanning (node.4dc198): 269
- AnomalyTraffic (node.ffe95c): 84
- IntrusionUserCompromise (node.cfb4f7): 1246
- 2025-11-01
-
- ReconScanning (node.368407): 261
- ReconScanning (node.4dc198): 287
- AnomalyTraffic (node.ffe95c): 110
- IntrusionUserCompromise (node.cfb4f7): 48
- 2025-10-31
-
- ReconScanning (node.4dc198): 281
- ReconScanning (node.368407): 233
- AnomalyTraffic (node.ffe95c): 39
- 2025-10-30
-
- ReconScanning (node.368407): 189
- ReconScanning (node.4dc198): 212
- AnomalyTraffic (node.ffe95c): 65
- 2025-10-29
-
- ReconScanning (node.368407): 284
- ReconScanning (node.4dc198): 284
- AnomalyTraffic (node.ffe95c): 9
- 2025-10-28
-
- ReconScanning (node.4dc198): 220
- ReconScanning (node.368407): 184
- AnomalyTraffic (node.ffe95c): 63
- ReconScanning (node.9c1411): 1
- 2025-10-27
-
- AnomalyTraffic (node.ffe95c): 29
- ReconScanning (node.4dc198): 244
- ReconScanning (node.368407): 241
- 2025-10-26
-
- ReconScanning (node.4dc198): 267
- AnomalyTraffic (node.ffe95c): 70
- ReconScanning (node.368407): 159
- 2025-10-25
-
- ReconScanning (node.368407): 158
- ReconScanning (node.4dc198): 286
- AnomalyTraffic (node.ffe95c): 76
- ReconScanning (node.9c1411): 7
- 2025-10-24
-
- ReconScanning (node.4dc198): 283
- ReconScanning (node.368407): 190
- AnomalyTraffic (node.ffe95c): 82
- ReconScanning (node.9c1411): 11
- 2025-10-23
-
- ReconScanning (node.4dc198): 179
- AnomalyTraffic (node.ffe95c): 57
- ReconScanning (node.368407): 106
- ReconScanning (node.9c1411): 7
- IntrusionUserCompromise (node.b17ef8): 15
- IntrusionUserCompromise (node.03e7a9): 46
- AttemptLogin (node.03e7a9): 9
- AttemptLogin (node.b17ef8): 10
- AttemptLogin (node.40929a): 1
- IntrusionUserCompromise (node.40929a): 6
- DShield reports (IP summary, reports)
- 2025-10-23
- Number of reports: 19456
- Distinct targets: 1603
- 2025-10-24
- Number of reports: 19456
- Distinct targets: 1603
- 2025-10-25
- Number of reports: 27924
- Distinct targets: 1672
- 2025-10-26
- Number of reports: 27924
- Distinct targets: 1672
- 2025-10-27
- Number of reports: 18986
- Distinct targets: 1464
- 2025-10-28
- Number of reports: 20273
- Distinct targets: 814
- 2025-10-29
- Number of reports: 28179
- Distinct targets: 765
- 2025-10-30
- Number of reports: 18465
- Distinct targets: 824
- 2025-10-31
- Number of reports: 31453
- Distinct targets: 850
- 2025-11-01
- Number of reports: 24937
- Distinct targets: 792
- 2025-11-02
- Number of reports: 24937
- Distinct targets: 792
- 2025-11-03
- Number of reports: 21726
- Distinct targets: 1087
- 2025-11-04
- Number of reports: 21726
- Distinct targets: 1087
- OTX pulses
-
[68fa1f5419a437ebf08cf9ef] 2025-10-23 12:28:04.524000 | Apache honeypot logs for 23/Oct/2025
Author name: jnazario Pulse modified: 2025-10-23 12:28:04.524000 Indicator created: 2025-10-23 12:28:05 Indicator role: None Indicator title: Indicator expiration: 2025-11-22 12:00:00 [68fb706718323c2674a9473c] 2025-10-24 12:26:15.517000 | Apache honeypot logs for 24/Oct/2025Author name: jnazario Pulse modified: 2025-10-24 12:26:15.517000 Indicator created: 2025-10-24 12:26:16 Indicator role: None Indicator title: Indicator expiration: 2025-11-23 12:00:00 [68fcc218065d6f9d539760e5] 2025-10-25 12:27:04.672000 | Apache honeypot logs for 25/Oct/2025Author name: jnazario Pulse modified: 2025-10-25 12:27:04.672000 Indicator created: 2025-10-25 12:27:05 Indicator role: None Indicator title: Indicator expiration: 2025-11-24 12:00:00 [68fe13d6d1d8ad77b286b308] 2025-10-26 12:28:06.562000 | Apache honeypot logs for 26/Oct/2025Author name: jnazario Pulse modified: 2025-10-26 12:28:06.562000 Indicator created: 2025-10-26 12:28:07 Indicator role: None Indicator title: Indicator expiration: 2025-11-25 12:00:00 [6900cd8fd5db8e0e963a0786] 2025-10-28 14:05:03.329000 | Apache honeypot logs for 28/Oct/2025Author name: jnazario Pulse modified: 2025-10-28 14:05:03.329000 Indicator created: 2025-10-28 14:05:04 Indicator role: None Indicator title: Indicator expiration: 2025-11-27 14:00:00 [69075c0b416b208a7a1f33bc] 2025-11-02 13:26:35.955000 | Apache honeypot logs for 02/Nov/2025Author name: jnazario Pulse modified: 2025-11-02 13:26:35.955000 Indicator created: 2025-11-02 13:26:36 Indicator role: None Indicator title: Indicator expiration: 2025-12-02 13:00:00 [690b502ba3176c5fdfd63dd5] 2025-11-05 13:24:59.224000 | Apache honeypot logs for 05/Nov/2025Author name: jnazario Pulse modified: 2025-11-05 13:24:59.224000 Indicator created: 2025-11-05 13:25:00 Indicator role: None Indicator title: Indicator expiration: 2025-12-05 13:00:00
- Origin AS
- AS213438 - colocatel-inc
- BGP Prefix
- 193.142.147.0/24
- geo
- Germany
- 🕑 Europe/Berlin
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 193.142.146.0 - 193.142.147.255
- last_activity
- 2025-11-05 17:30:59
- last_warden_event
- 2025-11-05 17:30:59
- rep
- 0.9264136904761904
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 22
- Tags: –
- CPEs: cpe:/o:debian:debian_linux, cpe:/a:openbsd:openssh:8.4p1, cpe:/o:linux:linux_kernel
- ts_added
- 2025-10-23 03:24:51.761000
- ts_last_update
- 2025-11-05 17:31:03.445000
Warden event timeline
DShield event timeline
Presence on blacklists
OTX pulses

