IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (11609)
- 2025-07-09
-
- ReconScanning (node.368407): 97
- ReconScanning (node.4dc198): 129
- AnomalyTraffic (node.ffe95c): 43
- AnomalyTraffic (node.86dac8): 15
- 2025-07-08
-
- ReconScanning (node.4dc198): 250
- ReconScanning (node.368407): 177
- AnomalyTraffic (node.ffe95c): 100
- AnomalyTraffic (node.86dac8): 52
- 2025-07-07
-
- AnomalyTraffic (node.86dac8): 41
- AnomalyTraffic (node.ffe95c): 75
- ReconScanning (node.4dc198): 240
- ReconScanning (node.368407): 131
- 2025-07-06
-
- ReconScanning (node.368407): 205
- ReconScanning (node.4dc198): 230
- ReconScanning (node.9c1411): 37
- AnomalyTraffic (node.ffe95c): 72
- AnomalyTraffic (node.86dac8): 26
- 2025-07-05
-
- ReconScanning (node.4dc198): 260
- ReconScanning (node.368407): 256
- ReconScanning (node.9c1411): 87
- AnomalyTraffic (node.86dac8): 31
- AnomalyTraffic (node.ffe95c): 64
- 2025-07-04
-
- ReconScanning (node.4dc198): 255
- ReconScanning (node.368407): 255
- ReconScanning (node.9c1411): 87
- AnomalyTraffic (node.ffe95c): 34
- AnomalyTraffic (node.86dac8): 32
- 2025-07-03
-
- ReconScanning (node.368407): 201
- ReconScanning (node.9c1411): 86
- ReconScanning (node.4dc198): 233
- AnomalyTraffic (node.ffe95c): 41
- AnomalyTraffic (node.86dac8): 23
- 2025-07-02
-
- ReconScanning (node.368407): 176
- ReconScanning (node.4dc198): 231
- AnomalyTraffic (node.ffe95c): 32
- ReconScanning (node.9c1411): 54
- AnomalyTraffic (node.86dac8): 6
- 2025-07-01
-
- ReconScanning (node.9c1411): 76
- AnomalyTraffic (node.86dac8): 36
- AnomalyTraffic (node.ffe95c): 45
- ReconScanning (node.4dc198): 258
- ReconScanning (node.368407): 177
- 2025-06-30
-
- ReconScanning (node.368407): 211
- ReconScanning (node.4dc198): 248
- ReconScanning (node.9c1411): 91
- AnomalyTraffic (node.ffe95c): 8
- IntrusionUserCompromise (node.cfb4f7): 11
- AnomalyTraffic (node.86dac8): 3
- 2025-06-29
-
- AnomalyTraffic (node.ffe95c): 57
- ReconScanning (node.4dc198): 264
- ReconScanning (node.368407): 191
- AnomalyTraffic (node.86dac8): 44
- ReconScanning (node.9c1411): 93
- 2025-06-28
-
- ReconScanning (node.9c1411): 93
- ReconScanning (node.368407): 207
- ReconScanning (node.4dc198): 260
- AnomalyTraffic (node.ffe95c): 105
- AnomalyTraffic (node.86dac8): 46
- 2025-06-27
-
- ReconScanning (node.368407): 194
- ReconScanning (node.4dc198): 248
- AnomalyTraffic (node.ffe95c): 98
- ReconScanning (node.9c1411): 89
- AnomalyTraffic (node.86dac8): 41
- 2025-06-26
-
- ReconScanning (node.4dc198): 251
- ReconScanning (node.9c1411): 92
- ReconScanning (node.368407): 205
- AnomalyTraffic (node.86dac8): 18
- AnomalyTraffic (node.ffe95c): 73
- 2025-06-25
-
- ReconScanning (node.4dc198): 237
- ReconScanning (node.368407): 181
- ReconScanning (node.9c1411): 93
- AnomalyTraffic (node.ffe95c): 81
- AnomalyTraffic (node.86dac8): 37
- 2025-06-24
-
- ReconScanning (node.368407): 202
- ReconScanning (node.9c1411): 89
- ReconScanning (node.4dc198): 246
- AnomalyTraffic (node.ffe95c): 17
- AnomalyTraffic (node.86dac8): 15
- 2025-06-23
-
- ReconScanning (node.9c1411): 87
- ReconScanning (node.368407): 185
- ReconScanning (node.4dc198): 229
- AnomalyTraffic (node.ffe95c): 9
- AnomalyTraffic (node.86dac8): 9
- 2025-06-22
-
- ReconScanning (node.4dc198): 238
- ReconScanning (node.368407): 177
- ReconScanning (node.9c1411): 75
- AnomalyTraffic (node.ffe95c): 57
- AnomalyTraffic (node.86dac8): 36
- 2025-06-21
-
- ReconScanning (node.368407): 175
- ReconScanning (node.4dc198): 197
- AnomalyTraffic (node.ffe95c): 57
- AnomalyTraffic (node.86dac8): 16
- ReconScanning (node.9c1411): 19
- 2025-06-20
-
- AnomalyTraffic (node.ffe95c): 13
- ReconScanning (node.368407): 83
- ReconScanning (node.4dc198): 88
- 2025-06-19
-
- ReconScanning (node.368407): 149
- ReconScanning (node.4dc198): 179
- AnomalyTraffic (node.ffe95c): 5
- AnomalyTraffic (node.86dac8): 5
- 2025-06-18
-
- ReconScanning (node.368407): 54
- ReconScanning (node.4dc198): 54
- ReconScanning (node.9c1411): 10
- AnomalyTraffic (node.ffe95c): 8
- DShield reports (IP summary, reports)
- 2025-06-18
- Number of reports: 2792
- Distinct targets: 409
- 2025-06-19
- Number of reports: 4693
- Distinct targets: 1123
- 2025-06-20
- Number of reports: 2084
- Distinct targets: 670
- 2025-06-21
- Number of reports: 6376
- Distinct targets: 1751
- 2025-06-22
- Number of reports: 6823
- Distinct targets: 1559
- 2025-06-23
- Number of reports: 4691
- Distinct targets: 1832
- 2025-06-24
- Number of reports: 4613
- Distinct targets: 1827
- 2025-06-25
- Number of reports: 4162
- Distinct targets: 1391
- 2025-06-26
- Number of reports: 4015
- Distinct targets: 1601
- 2025-06-27
- Number of reports: 6575
- Distinct targets: 1941
- 2025-06-28
- Number of reports: 4554
- Distinct targets: 1539
- 2025-06-29
- Number of reports: 6824
- Distinct targets: 1846
- 2025-06-30
- Number of reports: 4494
- Distinct targets: 1749
- 2025-07-01
- Number of reports: 5301
- Distinct targets: 796
- 2025-07-02
- Number of reports: 6127
- Distinct targets: 1292
- 2025-07-03
- Number of reports: 6206
- Distinct targets: 1416
- 2025-07-04
- Number of reports: 5489
- Distinct targets: 1179
- 2025-07-05
- Number of reports: 3810
- Distinct targets: 1231
- 2025-07-06
- Number of reports: 5424
- Distinct targets: 1589
- 2025-07-07
- Number of reports: 5671
- Distinct targets: 1354
- 2025-07-08
- Number of reports: 6335
- Distinct targets: 1615
- OTX pulses
-
[6861314235f26fe9acba63cf] 2025-06-29 12:27:46.225000 | Apache honeypot logs for 29/Jun/2025
Author name: jnazario Pulse modified: 2025-06-29 12:27:46.225000 Indicator created: 2025-06-29 12:27:47 Indicator role: None Indicator title: Indicator expiration: 2025-07-29 12:00:00 [6865254a50a498f718a5ab49] 2025-07-02 12:25:46.653000 | Apache honeypot logs for 02/Jul/2025Author name: jnazario Pulse modified: 2025-07-02 12:25:46.653000 Indicator created: 2025-07-02 12:25:47 Indicator role: None Indicator title: Indicator expiration: 2025-08-01 12:00:00 [686bbd3717d4629fde57baac] 2025-07-07 12:27:35.905000 | Apache honeypot logs for 07/Jul/2025Author name: jnazario Pulse modified: 2025-07-07 12:27:35.905000 Indicator created: 2025-07-07 12:27:36 Indicator role: None Indicator title: Indicator expiration: 2025-08-06 12:00:00
- Origin AS
- AS201814 - PL-SKYTECH-AS
- BGP Prefix
- 95.214.52.0/23
- geo
- Poland
- 🕑 Europe/Warsaw
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 95.214.52.0 - 95.214.55.255
- last_activity
- 2025-07-09 13:25:39
- last_warden_event
- 2025-07-09 13:25:39
- rep
- 0.9578869047619047
- reserved_range
- 0
- ts_added
- 2025-06-18 01:21:16.694000
- ts_last_update
- 2025-07-09 13:25:48.642000
Warden event timeline
DShield event timeline
Presence on blacklists
OTX pulses