IP address
Shodan(more info)

Passive DNS

- Warden events (6)
- 2026-05-19
-
- IntrusionUserCompromise (node.cfb4f7): 3
- 2026-05-13
-
- IntrusionUserCompromise (node.cfb4f7): 3
- DShield reports (IP summary, reports)
- 2026-04-16
- Number of reports: 202
- Distinct targets: 132
- 2026-04-21
- Number of reports: 14
- Distinct targets: 9
- 2026-04-29
- Number of reports: 17
- Distinct targets: 11
- 2026-04-30
- Number of reports: 17
- Distinct targets: 11
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| No threat category tags assigned | |||
- Origin AS
- AS9123 - TimeWeb-AS
- BGP Prefix
- 103.74.95.0/24
- geo
- Russia, St Petersburg
- 🕑 Europe/Moscow
- hostname
- 5933571-zj115051.twc1.net
- Address block ('inetnum' or 'NetRange' in whois database)
- 103.74.92.0 - 103.74.95.255
- last_activity
- 2026-05-19 17:50:04
- last_warden_event
- 2026-05-19 17:50:04
- rep
- 0.0
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 22, 25, 80, 465, 8080, 13333
- Tags: starttls
- CPEs: cpe:/a:openbsd:openssh:8.9p1, cpe:/a:openssl:openssl:3.0.2, cpe:/o:canonical:ubuntu_linux, cpe:/a:f5:nginx, cpe:/a:apache:http_server:2.4.66
- ts_added
- 2026-04-17 05:01:27.715000
- ts_last_update
- 2026-06-04 05:01:49.768000
Warden event timeline
DShield event timeline

