IP address


--75.119.142.39vmi943325.contaboserver.net
Shodan(more info)
Passive DNS
Tags:
IP blacklists
UCEPROTECT L1
75.119.142.39 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-11-13 08:45:00.705000
Was present on blacklist at: 2025-11-06 00:45, 2025-11-06 08:45, 2025-11-06 16:45, 2025-11-07 00:45, 2025-11-07 08:45, 2025-11-07 16:45, 2025-11-08 00:45, 2025-11-08 08:45, 2025-11-08 16:45, 2025-11-09 00:45, 2025-11-09 08:45, 2025-11-09 16:45, 2025-11-10 00:45, 2025-11-10 08:45, 2025-11-10 16:45, 2025-11-11 00:45, 2025-11-11 08:45, 2025-11-11 16:45, 2025-11-12 00:45, 2025-11-12 08:45, 2025-11-12 16:45, 2025-11-13 00:45, 2025-11-13 08:45
DataPlane VNC RFB
75.119.142.39 is listed on the DataPlane VNC RFB blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs initiating<br>an unsolicited VNC remote frame buffer (RFB) session to a remote host.
Type of feed: primary (feed detail page)

Last checked at: 2025-11-13 03:10:01.271000
Was present on blacklist at: 2025-11-06 03:10, 2025-11-06 07:10, 2025-11-06 15:10, 2025-11-06 19:10, 2025-11-07 03:10, 2025-11-07 07:10, 2025-11-07 19:10, 2025-11-08 03:10, 2025-11-08 07:10, 2025-11-08 15:10, 2025-11-08 19:10, 2025-11-09 03:10, 2025-11-09 07:10, 2025-11-09 15:10, 2025-11-09 19:10, 2025-11-10 03:10, 2025-11-10 07:10, 2025-11-10 15:10, 2025-11-10 19:10, 2025-11-11 03:10, 2025-11-11 07:10, 2025-11-11 15:10, 2025-11-11 19:10, 2025-11-12 03:10, 2025-11-12 15:10, 2025-11-12 19:10, 2025-11-13 03:10
AbuseIPDB
75.119.142.39 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2025-11-06 05:00:00.665000
Was present on blacklist at: 2025-11-06 05:00
OTX pulses
[690ca1962a423e5f6ea3a304] 2025-11-06 13:24:38.295000 | VNC honeypot logs for 2025/11/06
Author name:jnazario
Pulse modified:2025-11-06 13:24:38.295000
Indicator created:2025-11-06 13:24:39
Indicator role:None
Indicator title:
Indicator expiration:2025-12-06 13:00:00
Origin AS
AS51167 - CONTABO
BGP Prefix
75.119.128.0/19
geo
France, Lauterbourg
🕑 Europe/Paris
hostname
vmi943325.contaboserver.net
Address block ('inetnum' or 'NetRange' in whois database)
75.119.128.0 - 75.119.159.255
last_activity
2025-11-06 16:39:43.454000
reserved_range
0
Shodan's InternetDB
Open ports: 135, 443, 445, 1194, 1433
Tags: database, self-signed, vpn
CPEs: cpe:/a:microsoft:sql_server:10.50.1600.0
ts_added
2025-11-06 00:58:19.283000
ts_last_update
2025-12-16 00:58:22.032000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses