IP address


--194.135.119.179
Shodan(more info)
Passive DNS
Tags:
IP blacklists
DataPlane VNC RFB
194.135.119.179 is listed on the DataPlane VNC RFB blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs initiating<br>an unsolicited VNC remote frame buffer (RFB) session to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2025-12-10 07:10:00.878000
Was present on blacklist at: 2025-12-03 15:10, 2025-12-03 19:10, 2025-12-04 03:10, 2025-12-04 07:10, 2025-12-04 15:10, 2025-12-04 19:10, 2025-12-05 03:10, 2025-12-05 07:10, 2025-12-05 15:10, 2025-12-05 19:10, 2025-12-06 03:10, 2025-12-06 07:10, 2025-12-06 15:10, 2025-12-06 19:10, 2025-12-07 03:10, 2025-12-07 07:10, 2025-12-07 15:10, 2025-12-07 19:10, 2025-12-08 03:10, 2025-12-08 07:10, 2025-12-08 15:10, 2025-12-08 19:10, 2025-12-09 03:10, 2025-12-09 07:10, 2025-12-09 19:10, 2025-12-10 03:10, 2025-12-10 07:10
OTX pulses
[69303a229f384f94fc6e1f47] 2025-12-03 13:24:50.977000 | VNC honeypot logs for 2025/12/03
Author name:jnazario
Pulse modified:2025-12-03 13:24:50.977000
Indicator created:2025-12-03 13:24:51
Indicator role:None
Indicator title:
Indicator expiration:2026-01-02 13:00:00
Origin AS
AS203647 - WORLDBUS
BGP Prefix
194.135.119.0/24
geo
Georgia, Tbilisi
🕑 Asia/Tbilisi
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
194.135.119.0 - 194.135.119.255
last_activity
2025-12-03 16:36:25.098000
reserved_range
0
Shodan's InternetDB
Open ports: 22, 443, 992, 1028, 1194, 1701, 4500, 5555
Tags: vpn, self-signed
CPEs: cpe:/a:openbsd:openssh:8.2p1, cpe:/o:canonical:ubuntu_linux
ts_added
2025-12-03 15:11:53.078000
ts_last_update
2025-12-19 15:12:00.899000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses