IP address
Shodan(more info)

Passive DNS

- OTX pulses
-
[67e6c6b5e3b5eec595438366] 2025-03-28 15:56:37.744000 | Gamaredon campaign abuses LNK files to distribute Remcos backdoor
Author name: AlienVault Pulse modified: 2025-03-31 11:12:32.680000 Indicator created: 2025-03-28 15:56:38 Indicator role: None Indicator title: Indicator expiration: 2025-04-27 15:00:00
- Origin AS
- AS60602 - INOVARE-AS
- BGP Prefix
- 80.66.79.0/24
- geo
- Moldova, Chisinau
- 🕑 Europe/Chisinau
- hostname
- vm14159.hyper.hosting
- Address block ('inetnum' or 'NetRange' in whois database)
- 80.66.64.0 - 80.66.79.255
- last_activity
- 2025-03-31 12:37:03.517000
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 22, 80
- Tags: –
- CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:apache:http_server:2.4.52, cpe:/a:openbsd:openssh:8.9p1
- ts_added
- 2025-03-31 12:37:03.528000
- ts_last_update
- 2025-05-07 12:37:10.755000
Warden event timeline
DShield event timeline
OTX pulses