IP address
Shodan(more info)

Passive DNS

- IP blacklists
- Origin AS
- AS37963 - CNNIC-ALIBABA-CN-NET-AP
- BGP Prefix
- 47.98.0.0/15
- geo
- China, Hangzhou
- 🕑 Asia/Shanghai
- hostname
- (null)
- Address block ('inetnum' or 'NetRange' in whois database)
- 47.96.0.0 - 47.127.255.255
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 15, 19, 21, 23, 25, 37, 43, 70, 89, 104, 113, 189, 225, 263, 343, 389, 427, 440, 465, 502, 513, 515, 554, 556, 771, 992, 1023, 1025, 1177, 1290, 1337, 1414, 1588, 1723, 1800, 1883, 1947, 1968, 1984, 2002, 2003, 2020, 2048, 2087, 2154, 2181, 2222, 2323, 2351, 2404, 2569, 2572, 2628, 2761, 2762, 3001, 3003, 3004, 3048, 3057, 3148, 3310, 3342, 3388, 3500, 3523, 3551, 3780, 3790, 4000, 4022, 4043, 4103, 4157, 4242, 4250, 4282, 4300, 4321, 4343, 4431, 4433, 4434, 4444, 4500, 4506, 4786, 4949, 5001, 5025, 5100, 5130, 5201, 5435, 5630, 5858, 5986, 6000, 6002, 6003, 6004, 6008, 6161, 6352, 6379, 6580, 6633, 6653, 6666, 6667, 6668, 6688, 7007, 7071, 7078, 7088, 7105, 7171, 7349, 7415, 7548, 8027, 8043, 8083, 8085, 8087, 8089, 8126, 8130, 8140, 8174, 8181, 8187, 8189, 8291, 8333, 8381, 8409, 8442, 8463, 8500, 8560, 8575, 8622, 8688, 8724, 8728, 8813, 8825, 8840, 9021, 9023, 9035, 9042, 9067, 9092, 9100, 9133, 9206, 9216, 9226, 9280, 9283, 9299, 9313, 9333, 9387, 9398, 9418, 9443, 9454, 9530, 9553, 9633, 9711, 9761, 9876, 9898, 9918, 9939, 9943, 9988, 9994, 9998, 9999, 10052, 10106, 10250, 10324, 11112, 11211, 11288, 12000, 12113, 12126, 12137, 12149, 12158, 12190, 12193, 12295, 12297, 12318, 12328, 12345, 12353, 12389, 12434, 12442, 12469, 12491, 12544, 12563, 14404, 14523, 14524, 14825, 14905, 16031, 16064, 16601, 17000, 18077, 18239, 18245, 18765, 20001, 20200, 20256, 20325, 20547, 21025, 21235, 21281, 21286, 21299, 21314, 21319, 21935, 22556, 23023, 24472, 25001, 25008, 30001, 30002, 30003, 32764, 33060, 35000, 35002, 35559, 41800, 44306, 48020, 49688, 49690, 50014, 50073, 50080, 50100, 50106, 51201, 55000, 55475, 60129, 62080, 63260, 64477
- Tags: proxy, honeypot
- CPEs: cpe:/a:openbsd:openssh:X.X, cpe:/a:cisco:ssh:3524665.35, cpe:/o:canonical:ubuntu_linux, cpe:/a:microsoft:internet_information_services, cpe:/a:openbsd:openssh:7.4, cpe:/a:openbsd:openssh:7.2p2, cpe:/a:openbsd:openssh:7.5, cpe:/a:openbsd:openssh:7.6p1, cpe:/h:dlink:dls-2750u, cpe:/a:openbsd:openssh:5.3, cpe:/a:openbsd:openssh:6.6.1, cpe:/a:openbsd:openssh:8.0, cpe:/o:microsoft:windows, cpe:/a:apache:subversion, cpe:/a:openbsd:openssh:8.2p1, cpe:/a:realvnc:realvnc:::enterprise, cpe:/o:cisco:ios, cpe:/a:openbsd:openssh:7.9
- ts_added
- 2025-12-08 23:51:59.994000
- ts_last_update
- 2025-12-15 23:52:01.341000
Warden event timeline
DShield event timeline
Presence on blacklists

