IP address


--82.29.40.56hosted-by.webdade.cloud
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
82.29.40.56 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-11-14 03:50:01.127000
Was present on blacklist at: 2025-11-10 03:50, 2025-11-11 03:50, 2025-11-12 03:50, 2025-11-13 03:50, 2025-11-14 03:50
UCEPROTECT L1
82.29.40.56 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-11-18 00:45:00.620000
Was present on blacklist at: 2025-11-10 16:45, 2025-11-11 00:45, 2025-11-11 08:45, 2025-11-11 16:45, 2025-11-12 00:45, 2025-11-12 08:45, 2025-11-12 16:45, 2025-11-13 00:45, 2025-11-13 08:45, 2025-11-13 16:45, 2025-11-14 00:45, 2025-11-14 08:45, 2025-11-14 16:45, 2025-11-15 00:45, 2025-11-15 08:45, 2025-11-15 16:45, 2025-11-16 00:45, 2025-11-16 08:45, 2025-11-16 16:45, 2025-11-17 00:45, 2025-11-17 08:45, 2025-11-17 16:45, 2025-11-18 00:45
DShield reports (IP summary, reports)
2025-11-09
Number of reports: 166
Distinct targets: 112
2025-11-10
Number of reports: 54
Distinct targets: 36
2025-11-11
Number of reports: 54
Distinct targets: 36
2025-11-12
Number of reports: 32
Distinct targets: 22
2025-11-23
Number of reports: 17
Distinct targets: 16
2025-11-26
Number of reports: 17
Distinct targets: 7
OTX pulses
[6911e79a1da65fcb826dea18] 2025-11-10 13:24:42.390000 | RDP honeypot logs for 2025/11/10
Author name:jnazario
Pulse modified:2025-11-10 13:24:42.390000
Indicator created:2025-11-10 13:24:43
Indicator role:None
Indicator title:
Indicator expiration:2025-12-10 13:00:00
[6913391f2c84acd7132ac04e] 2025-11-11 13:24:47.244000 | RDP honeypot logs for 2025/11/11
Author name:jnazario
Pulse modified:2025-11-11 13:24:47.244000
Indicator created:2025-11-11 13:24:48
Indicator role:None
Indicator title:
Indicator expiration:2025-12-11 13:00:00
[69148a842706aa39547a74c4] 2025-11-12 13:24:20.553000 | RDP honeypot logs for 2025/11/12
Author name:jnazario
Pulse modified:2025-11-12 13:24:20.553000
Indicator created:2025-11-12 13:24:21
Indicator role:None
Indicator title:
Indicator expiration:2025-12-12 13:00:00
Origin AS
AS60781 - LeaseWeb-NL
BGP Prefix
82.29.40.0/24
geo
Netherlands, Amsterdam
🕑 Europe/Amsterdam
hostname
hosted-by.webdade.cloud
Address block ('inetnum' or 'NetRange' in whois database)
82.29.0.0 - 82.29.255.255
last_activity
2025-11-12 16:38:22.202000
reserved_range
0
Shodan's InternetDB
Open ports: 3389, 5357, 5985
Tags: self-signed
CPEs:
ts_added
2025-11-10 03:53:13.891000
ts_last_update
2025-12-16 03:53:20.230000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses