IP address
Shodan(more info)

Passive DNS

- IP blacklists
- DShield reports (IP summary, reports)
- 2026-06-02
- Number of reports: 56
- Distinct targets: 9
- 2026-06-03
- Number of reports: 56
- Distinct targets: 9
Threat categories
| TL | Role | Category | Details |
|---|---|---|---|
| 50 | src | scan | |
| 35 | src | login | protocol: ssh |
| 25 | src | — |
- Origin AS
- AS42846 - guzelhosting
- BGP Prefix
- 89.252.185.0/24
- geo
- Turkey
- 🕑 Europe/Istanbul
- hostname
- 127usy7ne.guzel.net.tr
- Address block ('inetnum' or 'NetRange' in whois database)
- 89.252.184.0 - 89.252.187.255
- rep
- 4.981855697749893e-05
- reserved_range
- 0
- Shodan's InternetDB
- Open ports: 21, 53, 110, 443, 587, 995, 2082, 2083, 2086, 2087
- Tags: starttls, self-signed
- CPEs: cpe:/a:cpanel:whm, cpe:/a:pureftpd:pure-ftpd, cpe:/a:apache:http_server, cpe:/a:exim:exim:4.96.2, cpe:/a:cpanel:cpanel
- ts_added
- 2026-05-25 16:10:22.545000
- ts_last_update
- 2026-06-12 16:10:30.324000
Warden event timeline
DShield event timeline
Presence on blacklists

