IP address


--185.28.119.228
Shodan(more info)
Passive DNS
Tags:
OTX pulses
[68de52ef382d67c8bdc97094] 2025-10-02 10:24:47.927000 | Threat Actors Leverage SEO Poisoning and Malicious Ads to Distribute Backdoored Microsoft Teams Installers
Author name:AlienVault
Pulse modified:2025-10-02 10:25:45.403000
Indicator created:2025-10-02 10:24:48
Indicator role:None
Indicator title:
Indicator expiration:2025-11-01 10:00:00
Origin AS
AS62005 - BV-EU-AS
BGP Prefix
185.28.119.0/24
geo
United States, Los Angeles
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
185.28.119.0 - 185.28.119.255
last_activity
2025-10-02 12:28:08.365000
reserved_range
0
Shodan's InternetDB
Open ports: 80, 10000
Tags: eol-product
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:f5:nginx:1.18.0, cpe:/o:linux:linux_kernel
ts_added
2025-10-02 12:28:08.375000
ts_last_update
2025-10-12 12:28:10.610000

Warden event timeline

DShield event timeline

OTX pulses