IP address
Shodan(more info)

Passive DNS

- IP blacklists
- OTX pulses
-
[6839003a3028827e1ebbfb1a] 2025-05-30 00:47:54.159000 | Tracking LummaC2 Infrastructure with Cats
Author name: AlienVault Pulse modified: 2025-05-30 08:42:53.660000 Indicator created: 2025-05-30 00:47:55 Indicator role: None Indicator title: Indicator expiration: 2025-06-29 00:00:00
- Origin AS
- AS214943 - RAILNET
- AS42821 - RAPIDNET-DE
- BGP Prefix
- 213.209.143.0/24
- geo
- Germany
- 🕑 Europe/Berlin
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 213.209.128.0 - 213.209.159.255
- last_activity
- 2025-05-30 12:27:05.199000
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 80, 443, 445, 8000, 8080
- Tags: self-signed
- CPEs: cpe:/a:openssl:openssl:3.1.3, cpe:/a:python:python, cpe:/a:apache:http_server:2.4.58, cpe:/a:jquery:jquery:1.10.2, cpe:/a:php:php:8.2.12, cpe:/a:encode:uvicorn
- ts_added
- 2025-05-30 12:27:05.205000
- ts_last_update
- 2025-06-29 12:27:10.185000
Warden event timeline
DShield event timeline
Presence on blacklists
OTX pulses