IP address


--138.199.57.35
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[694551f8d63b0bb322f13132] 2025-12-19 13:24:07.844000 | VNC honeypot logs for 2025/12/19
Author name:jnazario
Pulse modified:2025-12-19 13:24:07.844000
Indicator created:2025-12-19 13:24:09
Indicator role:None
Indicator title:
Indicator expiration:2026-01-18 13:00:00
[6946a39364d7003964d8214a] 2025-12-20 13:24:35.257000 | VNC honeypot logs for 2025/12/20
Author name:jnazario
Pulse modified:2025-12-20 13:24:35.257000
Indicator created:2025-12-20 13:24:36
Indicator role:None
Indicator title:
Indicator expiration:2026-01-19 13:00:00
[6947f66b07f4e9b74559cd38] 2025-12-21 13:30:19.016000 | VNC honeypot logs for 2025/12/21
Author name:jnazario
Pulse modified:2025-12-21 13:30:19.016000
Indicator created:2025-12-21 13:30:19
Indicator role:None
Indicator title:
Indicator expiration:2026-01-20 13:00:00
Origin AS
AS60068 - CDN77
BGP Prefix
138.199.57.0/24
geo
Canada, Toronto
🕑 America/Toronto
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
138.199.0.0 - 138.199.63.255
last_activity
2025-12-21 16:38:50.574000
reserved_range
0
Shodan's InternetDB
Open ports: 1443, 4000, 7443, 8443, 43148
Tags:
CPEs:
ts_added
2025-12-19 16:39:19.333000
ts_last_update
2025-12-21 16:39:20.150000

Warden event timeline

DShield event timeline

OTX pulses