IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (712)
- 2025-12-17
-
- IntrusionUserCompromise (node.cfb4f7): 28
- 2025-12-12
-
- IntrusionUserCompromise (node.cfb4f7): 25
- 2025-12-07
-
- IntrusionUserCompromise (node.cfb4f7): 2
- 2025-11-14
-
- IntrusionUserCompromise (node.cfb4f7): 122
- 2025-11-11
-
- IntrusionUserCompromise (node.cfb4f7): 28
- 2025-10-26
-
- IntrusionUserCompromise (node.cfb4f7): 114
- 2025-10-11
-
- IntrusionUserCompromise (node.cfb4f7): 365
- 2025-10-08
-
- IntrusionUserCompromise (node.cfb4f7): 10
- 2025-09-21
-
- IntrusionUserCompromise (node.cfb4f7): 18
- DShield reports (IP summary, reports)
- 2025-11-03
- Number of reports: 10
- Distinct targets: 3
- 2025-11-04
- Number of reports: 10
- Distinct targets: 3
- Origin AS
- AS4134 - CHINANET-BACKBONE
- BGP Prefix
- 106.58.0.0/15
- geo
- China
- 🕑 Asia/Shanghai
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 106.56.0.0 - 106.63.255.255
- last_activity
- 2025-12-17 17:25:07
- last_warden_event
- 2025-12-17 17:25:07
- rep
- 0.11071428571428571
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 13, 17, 19, 21, 1521, 3260, 5986
- Tags: self-signed
- CPEs: cpe:/o:microsoft:windows, cpe:/o:microsoft:qotd::::en
- ts_added
- 2025-07-04 05:19:37.468000
- ts_last_update
- 2025-12-18 05:19:41.043000
Warden event timeline
DShield event timeline
Presence on blacklists

