IP address


--38.134.148.20
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[67dc66bfb7805b74ba33d8f4] 2025-03-20 19:04:31.531000 | Unboxing Anubis: Exploring the Stealthy Tactics of FIN7's Latest Backdoor
Author name:AlienVault
Pulse modified:2025-03-21 14:43:25.201000
Indicator created:2025-03-20 19:04:32
Indicator role:None
Indicator title:
Indicator expiration:2025-04-19 19:00:00
Origin AS
AS174 - COGENT-174
BGP Prefix
38.134.148.0/24
geo
United States, Clifton
🕑 America/New_York
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
38.0.0.0 - 38.255.255.255
last_activity
2025-03-21 16:37:06.192000
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 3389
Tags: self-signed
CPEs: cpe:/a:openbsd:openssh:7.9p1, cpe:/o:linux:linux_kernel, cpe:/o:debian:debian_linux
ts_added
2025-03-21 16:37:06.203000
ts_last_update
2025-04-03 16:37:10.369000

Warden event timeline

DShield event timeline

OTX pulses