IP address


--203.195.82.136
Shodan(more info)
Passive DNS
Tags:
IP blacklists
DataPlane VNC RFB
203.195.82.136 is listed on the DataPlane VNC RFB blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs initiating<br>an unsolicited VNC remote frame buffer (RFB) session to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2025-11-11 07:10:00.987000
Was present on blacklist at: 2025-11-03 15:10, 2025-11-03 19:10, 2025-11-04 03:10, 2025-11-04 07:10, 2025-11-04 15:10, 2025-11-04 19:10, 2025-11-05 03:10, 2025-11-05 07:10, 2025-11-05 15:10, 2025-11-05 19:10, 2025-11-06 03:10, 2025-11-06 07:10, 2025-11-06 15:10, 2025-11-06 19:10, 2025-11-07 03:10, 2025-11-07 07:10, 2025-11-07 19:10, 2025-11-08 03:10, 2025-11-08 07:10, 2025-11-08 15:10, 2025-11-08 19:10, 2025-11-09 03:10, 2025-11-09 07:10, 2025-11-09 15:10, 2025-11-09 19:10, 2025-11-10 03:10, 2025-11-10 07:10, 2025-11-10 15:10, 2025-11-10 19:10, 2025-11-11 03:10, 2025-11-11 07:10
OTX pulses
[6908adaf81a3a9eb1746f5fc] 2025-11-03 13:27:11.640000 | VNC honeypot logs for 2025/11/03
Author name:jnazario
Pulse modified:2025-11-03 13:27:11.640000
Indicator created:2025-11-03 13:27:12
Indicator role:None
Indicator title:
Indicator expiration:2025-12-03 13:00:00
[690b502cd781fc4a9ce82638] 2025-11-05 13:25:00.585000 | VNC honeypot logs for 2025/11/05
Author name:jnazario
Pulse modified:2025-11-05 13:25:00.585000
Indicator created:2025-11-05 13:25:01
Indicator role:None
Indicator title:
Indicator expiration:2025-12-05 13:00:00
Origin AS
AS58519 - CHINATELECOM-Ctcloud
BGP Prefix
203.195.64.0/19
geo
China
🕑 Asia/Shanghai
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
203.195.64.0 - 203.195.95.255
last_activity
2025-11-05 16:39:32.761000
reserved_range
0
ts_added
2025-11-03 15:11:26.627000
ts_last_update
2025-12-15 15:11:31.098000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses