IP address


--93.127.160.199
Shodan(more info)
Passive DNS
Tags:
IP blacklists
UCEPROTECT L1
93.127.160.199 is listed on the UCEPROTECT L1 blacklist.

Description: UCEPROTECT-NETWORK list of spam IPs.
Type of feed: primary (feed detail page)

Last checked at: 2025-05-04 23:45:00.531000
Was present on blacklist at: 2025-04-28 07:45, 2025-04-28 15:45, 2025-04-28 23:45, 2025-04-29 07:45, 2025-04-29 15:45, 2025-04-29 23:45, 2025-04-30 07:45, 2025-04-30 15:45, 2025-04-30 23:45, 2025-05-01 07:45, 2025-05-01 15:45, 2025-05-01 23:45, 2025-05-02 07:45, 2025-05-02 15:45, 2025-05-02 23:45, 2025-05-03 07:45, 2025-05-03 15:45, 2025-05-03 23:45, 2025-05-04 07:45, 2025-05-04 15:45, 2025-05-04 23:45
OTX pulses
[680f8a1bceb4a48830d4d6b1] 2025-04-28 14:00:59.500000 | RDP honeypot logs for 2025/04/28
Author name:jnazario
Pulse modified:2025-04-28 14:00:59.500000
Indicator created:2025-04-28 14:01:00
Indicator role:None
Indicator title:
Indicator expiration:2025-05-28 14:00:00
[680f741f73439d1e3d57b098] 2025-04-28 12:27:11.640000 | RDP honeypot logs for 2025/04/28
Author name:jnazario
Pulse modified:2025-04-28 12:27:11.640000
Indicator created:2025-04-28 12:27:12
Indicator role:None
Indicator title:
Indicator expiration:2025-05-28 12:00:00
Origin AS
AS47447 - TTM
BGP Prefix
93.127.160.0/24
geo
Germany, Frankfurt am Main
🕑 Europe/Berlin
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
93.127.128.0 - 93.127.255.255
last_activity
2025-04-28 16:37:57.796000
reserved_range
0
Shodan's InternetDB
Open ports: 3389, 5357, 5985
Tags: self-signed
CPEs:
ts_added
2025-04-28 08:01:31.304000
ts_last_update
2025-05-10 08:01:40.476000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses