IP address
Shodan(more info)

Passive DNS

- Warden events (18)
- 2026-05-22
-
- ReconScanning (node.f90c6b): 3
- 2026-05-03
-
- ReconScanning (node.86eb21): 1
- 2026-04-24
-
- ReconScanning (node.86eb21): 1
- 2026-04-21
-
- ReconScanning (node.86eb21): 1
- 2026-04-19
-
- ReconScanning (node.86eb21): 1
- 2026-04-18
-
- ReconScanning (node.86eb21): 1
- 2026-04-10
-
- ReconScanning (node.86eb21): 1
- 2026-04-08
-
- ReconScanning (node.f90c6b): 3
- 2026-04-03
-
- ReconScanning (node.f90c6b): 3
- ReconScanning (node.86eb21): 1
- 2026-03-25
-
- ReconScanning (node.86eb21): 1
- 2026-03-18
-
- ReconScanning (node.f90c6b): 1
- DShield reports (IP summary, reports)
- 2026-03-11
- Number of reports: 90
- Distinct targets: 14
- 2026-03-17
- Number of reports: 50
- Distinct targets: 12
- 2026-03-25
- Number of reports: 68
- Distinct targets: 15
- 2026-03-26
- Number of reports: 68
- Distinct targets: 15
- 2026-04-02
- Number of reports: 52
- Distinct targets: 9
- 2026-04-09
- Number of reports: 68
- Distinct targets: 13
- 2026-04-20
- Number of reports: 36
- Distinct targets: 6
- 2026-04-21
- Number of reports: 68
- Distinct targets: 12
- 2026-04-29
- Number of reports: 66
- Distinct targets: 13
- 2026-04-30
- Number of reports: 66
- Distinct targets: 13
- 2026-05-07
- Number of reports: 46
- Distinct targets: 9
- 2026-05-08
- Number of reports: 46
- Distinct targets: 9
- 2026-05-14
- Number of reports: 56
- Distinct targets: 9
- 2026-05-20
- Number of reports: 72
- Distinct targets: 12
- 2026-06-02
- Number of reports: 36
- Distinct targets: 6
- 2026-06-03
- Number of reports: 36
- Distinct targets: 6
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 50 | src | scan |
- Origin AS
- AS35916 - MULTA-ASN1
- BGP Prefix
- 204.13.152.0/22
- geo
- United States
- 🕑 America/Chicago
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 204.13.152.0 - 204.13.155.255
- last_activity
- 2026-05-22 01:50:59
- last_warden_event
- 2026-05-22 01:50:59
- rep
- 5.5319362183392506e-05
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 13, 15, 19, 21, 22, 25, 26, 80, 81, 82, 102, 111, 121, 135, 179, 199, 264, 441, 442, 444, 445, 465, 513, 515, 631, 636, 843, 873, 902, 995, 1027, 1153, 1200, 1234, 1337, 1364, 1450, 1454, 1471, 1515, 1723, 1741, 1801, 1869, 1883, 1926, 1960, 1969, 2000, 2018, 2055, 2066, 2081, 2082, 2086, 2087, 2101, 2133, 2150, 2181, 2250, 2345, 2404, 2453, 2480, 2556, 2561, 2761, 2762, 3014, 3042, 3050, 3063, 3090, 3126, 3128, 3132, 3165, 3166, 3172, 3174, 3195, 3268, 3269, 3299, 3306, 3310, 3333, 3365, 3400, 3460, 3542, 3566, 3749, 3780, 4095, 4104, 4148, 4282, 4300, 4321, 4369, 4443, 4444, 4445, 4461, 4463, 4550, 4646, 4821, 4840, 4949, 4999, 5000, 5007, 5009, 5010, 5025, 5201, 5262, 5269, 5276, 5279, 5339, 5351, 5432, 5435, 5439, 5543, 5555, 5560, 5594, 5601, 5650, 5918, 5985, 5996, 5999, 6009, 6080, 6379, 6432, 6543, 6556, 6600, 6601, 6633, 6666, 6668, 6733, 6799, 6862, 7001, 7012, 7018, 7022, 7071, 7078, 7084, 7171, 7401, 7415, 7473, 7537, 7548, 7989, 8009, 8010, 8015, 8016, 8017, 8025, 8047, 8058, 8069, 8078, 8083, 8096, 8098, 8099, 8108, 8118, 8124, 8139, 8140, 8142, 8166, 8194, 8237, 8283, 8334, 8381, 8388, 8407, 8410, 8431, 8432, 8445, 8514, 8521, 8545, 8548, 8554, 8558, 8565, 8568, 8573, 8588, 8643, 8649, 8708, 8800, 8803, 8810, 8833, 8834, 8836, 8847, 8848, 8852, 8862, 8865, 8867, 8888, 9000, 9002, 9007, 9008, 9012, 9021, 9037, 9064, 9065, 9092, 9095, 9100, 9108, 9123, 9135, 9147, 9151, 9160, 9167, 9183, 9185, 9205, 9216, 9217, 9230, 9295, 9301, 9306, 9315, 9376, 9398, 9418, 9455, 9456, 9530, 9532, 9589, 9761, 9800, 9804, 9898, 9923, 9981, 9998
- Tags: honeypot
- CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:9.6p1
- ts_added
- 2026-02-27 05:01:28.132000
- ts_last_update
- 2026-06-05 05:01:34.588000
Warden event timeline
DShield event timeline

