IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (6676)
- 2026-03-24
-
- ReconScanning (node.4dc198): 130
- AnomalyTraffic (node.6a1878): 30
- ReconScanning (node.368407): 45
- ReconScanning (node.9c1411): 3
- 2026-03-23
-
- ReconScanning (node.368407): 79
- ReconScanning (node.4dc198): 263
- AnomalyTraffic (node.6a1878): 72
- ReconScanning (node.9c1411): 1
- 2026-03-22
-
- ReconScanning (node.4dc198): 275
- ReconScanning (node.368407): 94
- ReconScanning (node.9c1411): 22
- AnomalyTraffic (node.6a1878): 57
- 2026-03-21
-
- ReconScanning (node.4dc198): 252
- AnomalyTraffic (node.6a1878): 37
- ReconScanning (node.368407): 90
- ReconScanning (node.9c1411): 37
- 2026-03-20
-
- ReconScanning (node.4dc198): 287
- AnomalyTraffic (node.6a1878): 78
- ReconScanning (node.368407): 91
- ReconScanning (node.9c1411): 2
- 2026-03-19
-
- AnomalyTraffic (node.6a1878): 55
- ReconScanning (node.4dc198): 244
- ReconScanning (node.368407): 81
- ReconScanning (node.9c1411): 21
- 2026-03-14
-
- ReconScanning (node.4dc198): 127
- AnomalyTraffic (node.6a1878): 36
- ReconScanning (node.368407): 52
- ReconScanning (node.9c1411): 1
- 2026-03-13
-
- ReconScanning (node.4dc198): 274
- AnomalyTraffic (node.6a1878): 77
- ReconScanning (node.368407): 75
- ReconScanning (node.9c1411): 2
- 2026-03-12
-
- ReconScanning (node.368407): 87
- ReconScanning (node.4dc198): 210
- AnomalyTraffic (node.ffe95c): 24
- ReconScanning (node.9c1411): 11
- AnomalyTraffic (node.6a1878): 43
- 2026-03-11
-
- ReconScanning (node.4dc198): 237
- ReconScanning (node.368407): 94
- AnomalyTraffic (node.ffe95c): 53
- ReconScanning (node.9c1411): 24
- 2026-03-10
-
- ReconScanning (node.4dc198): 247
- AnomalyTraffic (node.ffe95c): 65
- ReconScanning (node.368407): 82
- ReconScanning (node.9c1411): 13
- 2026-03-09
-
- ReconScanning (node.4dc198): 282
- AnomalyTraffic (node.ffe95c): 61
- ReconScanning (node.368407): 97
- ReconScanning (node.9c1411): 10
- 2026-03-08
-
- ReconScanning (node.4dc198): 255
- AnomalyTraffic (node.ffe95c): 73
- ReconScanning (node.368407): 65
- ReconScanning (node.9c1411): 2
- 2026-03-07
-
- ReconScanning (node.4dc198): 233
- ReconScanning (node.368407): 56
- ReconScanning (node.9c1411): 36
- AnomalyTraffic (node.ffe95c): 44
- 2026-03-06
-
- AnomalyTraffic (node.ffe95c): 12
- ReconScanning (node.4dc198): 233
- ReconScanning (node.368407): 59
- ReconScanning (node.9c1411): 55
- 2026-03-05
-
- ReconScanning (node.9c1411): 57
- ReconScanning (node.4dc198): 137
- ReconScanning (node.368407): 16
- AnomalyTraffic (node.ffe95c): 14
- 2026-03-04
-
- ReconScanning (node.4dc198): 133
- ReconScanning (node.9c1411): 64
- ReconScanning (node.368407): 3
- AnomalyTraffic (node.ffe95c): 8
- 2026-03-03
-
- ReconScanning (node.9c1411): 70
- ReconScanning (node.4dc198): 69
- ReconScanning (node.368407): 2
- 2026-03-02
-
- ReconScanning (node.9c1411): 65
- ReconScanning (node.4dc198): 11
- 2026-03-01
-
- ReconScanning (node.4dc198): 137
- AnomalyTraffic (node.ffe95c): 38
- ReconScanning (node.9c1411): 34
- ReconScanning (node.368407): 4
- 2026-02-28
-
- ReconScanning (node.4dc198): 22
- ReconScanning (node.9c1411): 4
- AnomalyTraffic (node.ffe95c): 5
- ReconScanning (node.368407): 1
- 2026-02-09
-
- AnomalyTraffic (node.ffe95c): 5
- ReconScanning (node.368407): 12
- ReconScanning (node.4dc198): 12
- DShield reports (IP summary, reports)
- 2026-01-26
- Number of reports: 101
- Distinct targets: 62
- 2026-02-24
- Number of reports: 19544
- Distinct targets: 104
- 2026-02-25
- Number of reports: 19544
- Distinct targets: 104
- 2026-02-26
- Number of reports: 181
- Distinct targets: 114
- 2026-02-27
- Number of reports: 204
- Distinct targets: 96
- 2026-03-01
- Number of reports: 506
- Distinct targets: 87
- 2026-03-02
- Number of reports: 12817
- Distinct targets: 207
- 2026-03-03
- Number of reports: 23963
- Distinct targets: 402
- 2026-03-04
- Number of reports: 39958
- Distinct targets: 446
- 2026-03-05
- Number of reports: 39958
- Distinct targets: 446
- 2026-03-06
- Number of reports: 822
- Distinct targets: 186
- 2026-03-09
- Number of reports: 922
- Distinct targets: 187
- 2026-03-10
- Number of reports: 923
- Distinct targets: 195
- 2026-03-11
- Number of reports: 881
- Distinct targets: 200
- 2026-03-12
- Number of reports: 921
- Distinct targets: 194
- 2026-03-13
- Number of reports: 921
- Distinct targets: 194
- 2026-03-14
- Number of reports: 487
- Distinct targets: 188
- 2026-03-19
- Number of reports: 880
- Distinct targets: 187
- 2026-03-20
- Number of reports: 882
- Distinct targets: 185
- 2026-03-21
- Number of reports: 975
- Distinct targets: 190
- 2026-03-22
- Number of reports: 913
- Distinct targets: 187
- 2026-03-23
- Number of reports: 912
- Distinct targets: 196
- 2026-03-24
- Number of reports: 912
- Distinct targets: 196
- OTX pulses
-
[699dac8622cf49a6caaf1df2] 2026-02-24 13:49:58.739000 | Apache honeypot logs for 24/Feb/2026
Author name: jnazario Pulse modified: 2026-02-24 13:49:58.739000 Indicator created: 2026-02-24 13:49:59 Indicator role: None Indicator title: Indicator expiration: 2026-03-26 13:00:00 [69a58e9e2d7e67643309db51] 2026-03-02 13:20:30.643000 | Apache honeypot logs for 02/Mar/2026Author name: jnazario Pulse modified: 2026-03-02 13:20:30.643000 Indicator created: 2026-03-02 13:20:31 Indicator role: None Indicator title: Indicator expiration: 2026-04-01 13:00:00 [69a98489d5f13596ec3cb3bb] 2026-03-05 13:26:33.450000 | Apache honeypot logs for 05/Mar/2026Author name: jnazario Pulse modified: 2026-03-05 13:26:33.450000 Indicator created: 2026-03-05 13:26:34 Indicator role: None Indicator title: Indicator expiration: 2026-04-04 13:00:00
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 25 | src | — |
- Origin AS
- AS202425 - INT-NETWORK
- BGP Prefix
- 89.248.168.0/24
- geo
- Netherlands, Amsterdam
- 🕑 Europe/Amsterdam
- hostname
- no-reverse-dns-configured.com
- Address block ('inetnum' or 'NetRange' in whois database)
- 89.248.160.0 - 89.248.175.255
- last_activity
- 2026-03-24 10:44:19
- last_warden_event
- 2026-03-24 10:44:19
- rep
- 0.0
- reserved_range
- 0
- ts_added
- 2025-04-30 03:13:12.421000
- ts_last_update
- 2026-04-26 03:13:20.154000
Warden event timeline
DShield event timeline
Presence on blacklists
OTX pulses

