IP address


.314211.141.49.139
Shodan(more info)
Passive DNS
Tags: Scanner
IP blacklists
Turris greylist
211.141.49.139 is listed on the Turris greylist blacklist.

Description: Greylist is the output of the Turris research project by CZ.NIC,<br>which collects data of malicious IPs.
Type of feed: primary (feed detail page)

Last checked at: 2024-12-19 22:15:00.204000
Was present on blacklist at: 2024-11-23 22:15, 2024-11-25 22:15, 2024-11-26 22:15, 2024-11-30 22:15, 2024-12-08 22:15, 2024-12-13 22:15, 2024-12-19 22:15
DataPlane TELNET login
211.141.49.139 is listed on the DataPlane TELNET login blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs trying<br>an unsolicited login via TELNET password authentication.
Type of feed: primary (feed detail page)

Last checked at: 2024-11-27 07:10:03.602000
Was present on blacklist at: 2024-11-27 07:10
Warden events (511)
2024-12-18
ReconScanning (node.ce2b59): 10
2024-12-17
ReconScanning (node.ce2b59): 29
2024-12-16
ReconScanning (node.ce2b59): 31
2024-12-15
ReconScanning (node.ce2b59): 30
2024-12-14
ReconScanning (node.ce2b59): 29
2024-12-13
ReconScanning (node.ce2b59): 28
2024-12-12
ReconScanning (node.ce2b59): 29
2024-12-11
ReconScanning (node.ce2b59): 29
2024-12-10
ReconScanning (node.ce2b59): 30
2024-12-09
ReconScanning (node.ce2b59): 28
2024-12-08
ReconScanning (node.ce2b59): 31
2024-12-07
ReconScanning (node.ce2b59): 29
2024-12-06
ReconScanning (node.ce2b59): 29
2024-12-05
ReconScanning (node.ce2b59): 29
2024-12-04
ReconScanning (node.ce2b59): 30
2024-12-03
ReconScanning (node.ce2b59): 30
2024-12-02
ReconScanning (node.ce2b59): 3
2024-11-26
IntrusionUserCompromise (node.cfb4f7): 20
2024-11-25
IntrusionUserCompromise (node.cfb4f7): 8
2024-11-24
IntrusionUserCompromise (node.cfb4f7): 9
2024-11-23
IntrusionUserCompromise (node.cfb4f7): 6
2024-11-22
IntrusionUserCompromise (node.cfb4f7): 8
2024-11-21
IntrusionUserCompromise (node.cfb4f7): 6
OTX pulses
[675da2c96dcd87c9bcdc54bd] 2024-12-14 15:22:49.072000 | Telnet honeypot logs for 2024-12-14
Author name:jnazario
Pulse modified:2024-12-14 15:22:49.072000
Indicator created:2024-12-14 15:22:49
Indicator role:None
Indicator title:
Indicator expiration:2025-01-13 15:00:00
Origin AS
AS134810 - CMNET-JILIN-AS-AP
BGP Prefix
211.141.48.0/21
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
211.140.0.0 - 211.141.255.255
last_activity
2024-12-18 07:45:15
last_warden_event
2024-12-18 07:45:15
rep
0.3142345610119047
reserved_range
0
ts_added
2024-11-21 16:47:22.668000
ts_last_update
2024-12-21 16:47:30.502000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses