IP address


--89.248.172.139no-reverse-dns-configured.com
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[676038680e5f7630d485df71] 2024-12-16 14:25:43.303000 | Widespread Exploitation of Cleo File Transfer Software
Author name:AlienVault
Pulse modified:2024-12-16 14:25:43.303000
Indicator created:2024-12-16 14:25:44
Indicator role:None
Indicator title:
Indicator expiration:2025-01-15 14:00:00
[67acc93194ffc0edb08e9f06] 2025-02-12 16:15:45.455000 | CL0P Ransomware: Latest Attacks
Author name:AlienVault
Pulse modified:2025-02-12 20:19:30.964000
Indicator created:2025-02-12 16:15:46
Indicator role:None
Indicator title:
Indicator expiration:2025-03-14 16:00:00
Origin AS
AS202425 - INT-NETWORK
BGP Prefix
89.248.172.0/24
geo
Netherlands, Utrecht
🕑 Europe/Amsterdam
hostname
no-reverse-dns-configured.com
Address block ('inetnum' or 'NetRange' in whois database)
89.248.160.0 - 89.248.175.255
last_activity
2025-02-13 00:34:04.655000
reserved_range
0
Shodan's InternetDB
Open ports: 22, 443
Tags:
CPEs: cpe:/o:debian:debian_linux, cpe:/o:linux:linux_kernel, cpe:/a:openbsd:openssh:9.2p1
ts_added
2024-12-16 16:34:06.494000
ts_last_update
2025-03-13 16:34:10.387000

Warden event timeline

DShield event timeline

OTX pulses