IP address
Shodan(more info)

Passive DNS

- MISP events
-
[315] 2026-08-03 00:00:00 | Indicadores de Compromiso Investigadores Independientes-359
Reporting org.: SONDA - Coomeva TLP: white Tags: MALWARE Sightings: positive: 0 | false positive: 0 | expired attribute: 0 Last change: 2026-09-03 05:01:36 Threat level: High Role of this IP: src
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| No threat category tags assigned | |||
- Origin AS
- AS215607 - DF-Transit
- BGP Prefix
- 94.249.203.0/24
- geo
- Germany
- 🕑 Europe/Berlin
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 94.249.128.0 - 94.249.255.255
- last_activity
- 2026-08-03 00:00:00
- rep
- 0.0
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 22, 80, 443, 808, 8080
- Tags: –
- CPEs: cpe:/o:debian:debian_linux, cpe:/a:lightbox_photo_gallery_project:lightbox_photo_gallery, cpe:/a:jquery:jquery, cpe:/a:openbsd:openssh:10.0p2, cpe:/o:linux:linux_kernel, cpe:/a:f5:nginx, cpe:/a:getbootstrap:bootstrap
- ts_added
- 2026-09-04 16:36:22.144000
- ts_last_update
- 2026-09-18 16:36:31.598000
Warden event timeline
DShield event timeline

