IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Warden events (12)
- 2025-12-11
-
- ReconScanning (node.4dc198): 6
- ReconScanning (node.368407): 6
- DShield reports (IP summary, reports)
- 2025-12-11
- Number of reports: 115
- Distinct targets: 18
- 2025-12-12
- Number of reports: 115
- Distinct targets: 18
- Origin AS
- AS51167 - CONTABO
- BGP Prefix
- 161.97.96.0/23
- geo
- France, Lauterbourg
- 🕑 Europe/Paris
- hostname
- vmi2930014.contaboserver.net
- Address block ('inetnum' or 'NetRange' in whois database)
- 161.97.64.0 - 161.97.127.255
- last_activity
- 2025-12-11 16:11:29
- last_warden_event
- 2025-12-11 16:11:29
- rep
- 0.07855224609375
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 22, 80, 443, 887, 5432, 27017
- Tags: database, starttls, self-signed
- CPEs: cpe:/a:php:php, cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:8.9p1, cpe:/a:mongodb:mongodb:8.0.16, cpe:/a:postgresql:postgresql:15, cpe:/a:laravel:laravel, cpe:/a:openssl:openssl:3.0.13, cpe:/a:pureftpd:pure-ftpd, cpe:/a:f5:nginx
- ts_added
- 2025-12-11 15:45:39.599000
- ts_last_update
- 2025-12-14 23:51:47.089000
Warden event timeline
DShield event timeline
Presence on blacklists

