IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (7906)
- 2025-07-30
-
- ReconScanning (node.9c1411): 3
- 2025-07-29
-
- ReconScanning (node.9c1411): 7
- 2025-07-28
-
- ReconScanning (node.9c1411): 5
- 2025-07-26
-
- ReconScanning (node.9c1411): 8
- IntrusionUserCompromise (node.cfb4f7): 627
- 2025-07-25
-
- ReconScanning (node.9c1411): 1
- 2025-07-20
-
- IntrusionUserCompromise (node.cfb4f7): 312
- 2025-07-19
-
- IntrusionUserCompromise (node.cfb4f7): 420
- 2025-07-15
-
- IntrusionUserCompromise (node.cfb4f7): 136
- 2025-07-14
-
- IntrusionUserCompromise (node.cfb4f7): 148
- ReconScanning (node.9c1411): 6
- 2025-07-11
-
- IntrusionUserCompromise (node.cfb4f7): 179
- 2025-07-08
-
- IntrusionUserCompromise (node.cfb4f7): 185
- 2025-07-01
-
- ReconScanning (node.9c1411): 6
- 2025-06-29
-
- IntrusionUserCompromise (node.cfb4f7): 930
- 2025-06-28
-
- ReconScanning (node.9c1411): 6
- 2025-06-26
-
- ReconScanning (node.9c1411): 3
- 2025-06-25
-
- ReconScanning (node.9c1411): 10
- IntrusionUserCompromise (node.cfb4f7): 1859
- 2025-06-22
-
- ReconScanning (node.9c1411): 8
- 2025-06-20
-
- ReconScanning (node.9c1411): 12
- 2025-06-18
-
- IntrusionUserCompromise (node.cfb4f7): 518
- 2025-06-17
-
- ReconScanning (node.9c1411): 5
- 2025-06-16
-
- ReconScanning (node.9c1411): 1
- 2025-06-13
-
- ReconScanning (node.9c1411): 5
- 2025-06-12
-
- IntrusionUserCompromise (node.cfb4f7): 204
- ReconScanning (node.9c1411): 12
- 2025-06-11
-
- IntrusionUserCompromise (node.cfb4f7): 322
- 2025-06-05
-
- IntrusionUserCompromise (node.cfb4f7): 127
- 2025-06-04
-
- IntrusionUserCompromise (node.cfb4f7): 133
- 2025-05-25
-
- IntrusionUserCompromise (node.cfb4f7): 196
- 2025-05-23
-
- IntrusionUserCompromise (node.cfb4f7): 302
- 2025-05-22
-
- IntrusionUserCompromise (node.cfb4f7): 263
- 2025-05-20
-
- IntrusionUserCompromise (node.cfb4f7): 221
- 2025-05-18
-
- IntrusionUserCompromise (node.cfb4f7): 109
- 2025-05-07
-
- IntrusionUserCompromise (node.cfb4f7): 617
- Origin AS
- AS42682 - ERTH-NNOV-AS
- BGP Prefix
- 95.79.128.0/22
- dshield
- []
- geo
- Russia, Nizhniy Novgorod
- 🕑 Europe/Moscow
- hostname
- 95x79x128x85.static.nn.ertelecom.ru
- hostname_class
- ['isp', 'ip_in_hostname', 'static']
- Address block ('inetnum' or 'NetRange' in whois database)
- 95.78.0.0 - 95.79.255.255
- last_activity
- 2025-07-30 17:12:54
- last_warden_event
- 2025-07-30 17:12:54
- rep
- 0.20364583333333336
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 88, 554, 555, 2000, 8080, 8291
- Tags: –
- CPEs: cpe:/o:mikrotik:routeros:6.42.11
- ts_added
- 2024-09-05 05:12:55.362000
- ts_last_update
- 2025-08-02 05:22:39.182000
Warden event timeline
DShield event timeline
Presence on blacklists