IP address
Shodan(more info)

Passive DNS

- OTX pulses
-
[676038680e5f7630d485df71] 2024-12-16 14:25:43.303000 | Widespread Exploitation of Cleo File Transfer Software
Author name: AlienVault Pulse modified: 2024-12-16 14:25:43.303000 Indicator created: 2024-12-16 14:25:44 Indicator role: None Indicator title: Indicator expiration: 2025-01-15 14:00:00 [67acc93194ffc0edb08e9f06] 2025-02-12 16:15:45.455000 | CL0P Ransomware: Latest AttacksAuthor name: AlienVault Pulse modified: 2025-02-12 20:19:30.964000 Indicator created: 2025-02-12 16:15:46 Indicator role: None Indicator title: Indicator expiration: 2025-03-14 16:00:00
- Origin AS
- AS202425 - INT-NETWORK
- BGP Prefix
- 89.248.172.0/24
- geo
- Netherlands, Utrecht
- 🕑 Europe/Amsterdam
- hostname
- no-reverse-dns-configured.com
- Address block ('inetnum' or 'NetRange' in whois database)
- 89.248.160.0 - 89.248.175.255
- last_activity
- 2025-02-13 00:34:04.655000
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 22, 443
- Tags: –
- CPEs: cpe:/o:debian:debian_linux, cpe:/o:linux:linux_kernel, cpe:/a:openbsd:openssh:9.2p1
- ts_added
- 2024-12-16 16:34:06.494000
- ts_last_update
- 2025-03-13 16:34:10.387000
Warden event timeline
DShield event timeline
OTX pulses