IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (5969)
- 2025-04-21
-
- ReconScanning (node.4dc198): 96
- ReconScanning (node.368407): 97
- AnomalyTraffic (node.86dac8): 2
- 2025-04-20
-
- ReconScanning (node.4dc198): 169
- ReconScanning (node.368407): 166
- ReconScanning (node.9c1411): 38
- AnomalyTraffic (node.86dac8): 3
- AnomalyTraffic (node.ffe95c): 1
- 2025-04-19
-
- ReconScanning (node.4dc198): 264
- ReconScanning (node.368407): 168
- ReconScanning (node.9c1411): 3
- AnomalyTraffic (node.ffe95c): 1
- 2025-04-18
-
- ReconScanning (node.4dc198): 266
- ReconScanning (node.9c1411): 1
- 2025-04-17
-
- ReconScanning (node.4dc198): 161
- ReconScanning (node.368407): 2
- ReconScanning (node.9c1411): 15
- 2025-04-16
-
- ReconScanning (node.4dc198): 1
- ReconScanning (node.9c1411): 2
- ReconScanning (node.368407): 1
- 2025-04-12
-
- ReconScanning (node.4dc198): 49
- ReconScanning (node.368407): 51
- ReconScanning (node.9c1411): 15
- 2025-04-11
-
- ReconScanning (node.4dc198): 163
- ReconScanning (node.9c1411): 43
- ReconScanning (node.368407): 162
- ReconScanning (node.5f02e7): 1
- 2025-04-10
-
- ReconScanning (node.4dc198): 72
- ReconScanning (node.368407): 71
- ReconScanning (node.9c1411): 16
- ReconScanning (node.5f02e7): 1
- 2025-04-08
-
- ReconScanning (node.4dc198): 67
- ReconScanning (node.368407): 68
- ReconScanning (node.9c1411): 21
- 2025-04-07
-
- ReconScanning (node.4dc198): 89
- ReconScanning (node.368407): 89
- ReconScanning (node.9c1411): 25
- ReconScanning (node.5f02e7): 1
- 2025-04-06
-
- ReconScanning (node.4dc198): 29
- ReconScanning (node.368407): 2
- ReconScanning (node.9c1411): 4
- IntrusionUserCompromise (node.cfb4f7): 3163
- 2025-04-05
-
- ReconScanning (node.4dc198): 46
- ReconScanning (node.9c1411): 15
- IntrusionUserCompromise (node.cfb4f7): 56
- ReconScanning (node.368407): 43
- 2025-04-04
-
- IntrusionUserCompromise (node.cfb4f7): 45
- 2025-03-31
-
- IntrusionUserCompromise (node.cfb4f7): 103
- 2025-03-30
-
- ReconScanning (node.4dc198): 2
- DShield reports (IP summary, reports)
- 2025-03-30
- Number of reports: 114
- Distinct targets: 29
- 2025-03-31
- Number of reports: 593
- Distinct targets: 198
- 2025-04-04
- Number of reports: 517
- Distinct targets: 285
- 2025-04-05
- Number of reports: 2450
- Distinct targets: 1087
- 2025-04-06
- Number of reports: 1493
- Distinct targets: 343
- 2025-04-07
- Number of reports: 4250
- Distinct targets: 1572
- 2025-04-08
- Number of reports: 2147
- Distinct targets: 1549
- 2025-04-10
- Number of reports: 1330
- Distinct targets: 940
- 2025-04-11
- Number of reports: 5646
- Distinct targets: 3263
- 2025-04-12
- Number of reports: 1854
- Distinct targets: 1087
- 2025-04-16
- Number of reports: 26
- Distinct targets: 15
- 2025-04-17
- Number of reports: 6308
- Distinct targets: 407
- 2025-04-18
- Number of reports: 11092
- Distinct targets: 462
- 2025-04-19
- Number of reports: 6630
- Distinct targets: 907
- 2025-04-20
- Number of reports: 6288
- Distinct targets: 663
- 2025-04-21
- Number of reports: 3428
- Distinct targets: 625
- 2025-04-22
- Number of reports: 313
- Distinct targets: 5
- 2025-04-23
- Number of reports: 523
- Distinct targets: 7
- OTX pulses
-
[5a7e3e70c44e7b48947593a7] 2018-02-10 00:36:00.396000 | Webscanners 2018-02-09 thru current day
Author name: david3 Pulse modified: 2025-04-28 15:55:22.084000 Indicator created: 2025-04-04 07:15:25 Indicator role: scanning_host Indicator title: 404 NOT FOUND Indicator expiration: 2025-07-03 00:00:00
- Origin AS
- AS209605 - hostbaltic
- BGP Prefix
- 141.98.11.0/24
- geo
- Lithuania, Vilnius
- 🕑 Europe/Vilnius
- hostname
- srv-141-98-11-83.serveroffer.net
- hostname_class
- ['ip_in_hostname']
- Address block ('inetnum' or 'NetRange' in whois database)
- 141.98.8.0 - 141.98.11.255
- last_activity
- 2025-04-28 16:08:01.070000
- last_warden_event
- 2025-04-21 13:35:11
- rep
- 0.2275297619047619
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 135, 5985
- Tags: –
- CPEs: –
- ts_added
- 2025-03-30 03:51:01.476000
- ts_last_update
- 2025-04-28 16:08:01.082000
Warden event timeline
DShield event timeline
Presence on blacklists
OTX pulses