IP address


.00391.208.115.136dedicated.vsys.host
Shodan(more info)
Passive DNS
Tags: Scanner

Threat categories

TLRoleCategoryDetails
48 src scan port: 23

Warden events (51)
2026-05-08
ReconScanning (node.9c1411): 4
2026-05-07
ReconScanning (node.ce2b59): 3
ReconScanning (node.9c1411): 5
2026-05-02
ReconScanning (node.ce2b59): 12
2026-05-01
ReconScanning (node.ce2b59): 19
2026-04-30
ReconScanning (node.ce2b59): 8
DShield reports (IP summary, reports)
2026-05-01
Number of reports: 37
Distinct targets: 3
2026-05-02
Number of reports: 2423
Distinct targets: 4
2026-05-03
Number of reports: 2423
Distinct targets: 4
Origin AS
AS6698 - virtualsystems
BGP Prefix
91.208.115.0/24
geo
Ukraine, Kyiv
🕑 Europe/Kyiv
hostname
dedicated.vsys.host
Address block ('inetnum' or 'NetRange' in whois database)
91.208.115.0 - 91.208.115.255
last_activity
2026-05-08 01:09:57
last_warden_event
2026-05-08 01:09:57
rep
0.003377797570509933
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 110, 111, 143, 443, 587, 995, 2079, 2082, 2083, 2087, 2096, 3306
Tags: starttls, database, eol-product
CPEs: cpe:/a:php:php:5.6.40, cpe:/a:cpanel:whm, cpe:/a:openbsd:openssh:8.0, cpe:/a:exim:exim:4.99.1, cpe:/a:cpanel:cpanel, cpe:/a:mariadb:mariadb, cpe:/a:apache:http_server
ts_added
2026-04-30 19:55:47.086000
ts_last_update
2026-05-20 19:55:50.170000

Warden event timeline

DShield event timeline