IP address
Shodan(more info)
Passive DNS
- IP blacklists
- Warden events (61)
- 2024-10-31
-
- ReconScanning (node.368407): 1
- ReconScanning (node.4dc198): 1
- 2024-10-30
-
- ReconScanning (node.368407): 2
- 2024-10-29
-
- ReconScanning (node.368407): 2
- 2024-10-28
-
- ReconScanning (node.368407): 3
- ReconScanning (node.4dc198): 2
- 2024-10-27
-
- AnomalyTraffic (node.ce2b59): 1
- ReconScanning (node.4dc198): 2
- AnomalyTraffic (node.ffe95c): 1
- ReconScanning (node.ce2b59): 1
- 2024-10-26
-
- ReconScanning (node.368407): 1
- ReconScanning (node.4dc198): 1
- AnomalyTraffic (node.ffe95c): 1
- 2024-10-25
-
- ReconScanning (node.368407): 3
- ReconScanning (node.4dc198): 1
- 2024-10-24
-
- ReconScanning (node.368407): 3
- 2024-10-23
-
- ReconScanning (node.4dc198): 1
- 2024-10-22
-
- ReconScanning (node.368407): 1
- 2024-10-21
-
- ReconScanning (node.368407): 2
- ReconScanning (node.4dc198): 1
- 2024-10-20
-
- ReconScanning (node.4dc198): 1
- AnomalyTraffic (node.ffe95c): 1
- 2024-10-19
-
- ReconScanning (node.368407): 3
- 2024-10-18
-
- ReconScanning (node.368407): 3
- 2024-10-17
-
- ReconScanning (node.4dc198): 1
- 2024-10-16
-
- ReconScanning (node.368407): 2
- ReconScanning (node.4dc198): 1
- 2024-10-15
-
- ReconScanning (node.4dc198): 1
- ReconScanning (node.368407): 1
- 2024-10-14
-
- ReconScanning (node.368407): 3
- ReconScanning (node.4dc198): 2
- 2024-10-13
-
- ReconScanning (node.368407): 1
- 2024-10-12
-
- ReconScanning (node.368407): 3
- ReconScanning (node.4dc198): 1
- 2024-10-11
-
- ReconScanning (node.368407): 1
- 2024-10-10
-
- ReconScanning (node.4dc198): 1
- AnomalyTraffic (node.ffe95c): 1
- 2024-10-09
-
- ReconScanning (node.368407): 2
- 2024-10-08
-
- ReconScanning (node.368407): 1
- DShield reports (IP summary, reports)
- 2024-10-08
- Number of reports: 11
- Distinct targets: 8
- 2024-10-09
- Number of reports: 22
- Distinct targets: 15
- 2024-10-10
- Number of reports: 31
- Distinct targets: 21
- 2024-10-11
- Number of reports: 40
- Distinct targets: 24
- 2024-10-12
- Number of reports: 41
- Distinct targets: 25
- 2024-10-13
- Number of reports: 56
- Distinct targets: 39
- 2024-10-14
- Number of reports: 30
- Distinct targets: 19
- 2024-10-15
- Number of reports: 52
- Distinct targets: 28
- 2024-10-16
- Number of reports: 47
- Distinct targets: 32
- 2024-10-17
- Number of reports: 17
- Distinct targets: 12
- 2024-10-18
- Number of reports: 36
- Distinct targets: 25
- 2024-10-19
- Number of reports: 55
- Distinct targets: 32
- 2024-10-20
- Number of reports: 17
- Distinct targets: 14
- 2024-10-21
- Number of reports: 60
- Distinct targets: 45
- 2024-10-22
- Number of reports: 35
- Distinct targets: 27
- 2024-10-23
- Number of reports: 33
- Distinct targets: 26
- 2024-10-24
- Number of reports: 29
- Distinct targets: 24
- 2024-10-25
- Number of reports: 51
- Distinct targets: 31
- 2024-10-26
- Number of reports: 49
- Distinct targets: 26
- 2024-10-27
- Number of reports: 29
- Distinct targets: 23
- 2024-10-28
- Number of reports: 26
- Distinct targets: 25
- 2024-10-29
- Number of reports: 51
- Distinct targets: 36
- 2024-10-30
- Number of reports: 35
- Distinct targets: 26
- Origin AS
- AS37963 - CNNIC-ALIBABA-CN-NET-AP
- BGP Prefix
- 47.94.0.0/15
- geo
- China, Beijing
- 🕑 Asia/Shanghai
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 47.92.0.0 - 47.95.255.255
- last_activity
- 2024-10-31 16:10:03
- last_warden_event
- 2024-10-31 16:10:03
- rep
- 0.5492559523809525
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 11, 13, 15, 17, 25, 26, 53, 70, 82, 102, 104, 110, 135, 143, 195, 221, 311, 444, 448, 548, 631, 666, 789, 805, 993, 995, 1023, 1027, 1234, 1337, 1344, 1414, 1433, 1800, 1911, 1926, 2000, 2008, 2066, 2081, 2087, 2121, 2154, 2181, 2222, 2376, 2455, 2551, 2761, 2762, 3002, 3050, 3268, 3269, 3299, 3310, 3388, 3567, 3780, 3838, 4063, 4157, 4433, 4434, 4443, 4444, 4506, 4782, 4786, 4840, 4899, 4911, 4949, 5001, 5006, 5010, 5025, 5201, 5222, 5672, 5858, 5910, 5938, 5984, 6000, 6002, 6102, 6379, 6443, 6590, 6668, 7171, 7218, 7415, 7434, 7443, 7547, 7634, 8009, 8039, 8054, 8081, 8083, 8085, 8099, 8112, 8123, 8126, 8139, 8181, 8248, 8252, 8334, 8420, 8500, 8554, 8575, 8623, 8686, 8728, 8767, 8802, 8853, 8887, 8889, 9000, 9001, 9021, 9051, 9091, 9092, 9094, 9095, 9100, 9102, 9119, 9206, 9209, 9251, 9306, 9398, 9418, 9443, 9595, 9600, 9682, 9800, 9898, 9966, 9998, 10134, 10250, 10554, 11112, 11300, 12000, 14265, 16010, 16992, 16993, 18081, 20256, 20547, 21025, 21379, 23023, 25001, 25565, 28015, 30002, 30003, 31337, 32764, 33060, 35000, 39277, 41800, 44158, 44818, 49152, 50050, 50100, 54138, 55000, 55443, 55553, 55554, 60030, 60129, 61613, 62078
- Tags: eol-product, honeypot, proxy
- CPEs: cpe:/a:openbsd:openssh:7.4, cpe:/o:hp:hp-ux, cpe:/a:openbsd:openssh:5.3, cpe:/a:f5:nginx, cpe:/o:canonical:ubuntu_linux, cpe:/o:microsoft:windows, cpe:/a:openbsd:openssh:7.6p1, cpe:/a:openbsd:openssh:8.0, cpe:/a:f5:nginx:1.22.1, cpe:/a:openbsd:openssh:7.5, cpe:/a:xiongmaitech:uc-httpd:1.0.0, cpe:/a:openbsd:openssh:6.6.1
- ts_added
- 2024-10-08 17:53:44.229000
- ts_last_update
- 2024-10-31 17:53:50.539000