🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 651864 Page: 1678 / 6519 (100 per page) Showing: 167701-167800 Last Imported: 13/04/2026, 13:41:02
🇨🇳 356,384
🇺🇸 173,592
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 52.215.204.•••:18789 | - | 🇮🇪 Ireland | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services Ireland | 24/03/2026, 18:16:04 | 30/03/2026, 22:27:32 | - | - | - | - | - | - |
| 117.72.35.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS141679 | China Telecom Beijing Tianjin Hebei Big Data Industry Park Branch | JD.com | 24/03/2026, 18:16:04 | 09/04/2026, 00:19:59 | - | - | - | - | - | - |
| 39.98.37.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:04 | 12/04/2026, 00:46:12 | Yes | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Packrat, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 03/04/2026, 00:44:40 | aliyun.com |
| 157.254.174.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS26141 | CubePath | Cube Path | 24/03/2026, 18:16:04 | 24/03/2026, 18:16:04 | - | - | - | - | - | - |
| 178.104.97.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 24/03/2026, 18:16:04 | 07/04/2026, 09:29:46 | - | - | - | - | - | - |
| 47.92.151.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:04 | 11/04/2026, 21:02:36 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 06/04/2026, 03:00:01 | syjrxn.com |
| 40.90.169.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 24/03/2026, 18:16:04 | 12/04/2026, 14:59:48 | - | - | - | - | - | - |
| 38.238.147.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | Dxtl Service | 24/03/2026, 18:16:04 | 24/03/2026, 18:16:04 | - | - | - | - | - | - |
| 136.116.111.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 24/03/2026, 18:16:04 | 11/04/2026, 22:32:33 | No | No | - | - | 02/04/2026, 15:51:09 | - | |
| 47.92.233.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:04 | 12/04/2026, 23:52:25 | No | Yes | APT28, APT40, APT41, Cobalt Group, Earth Berberoka, Energetic Bear, Equation Group, Leafminer, Luckycat APT, Sandworm Team | CVE-2000-1210, CVE-2001-0590, CVE-2002-0493, CVE-2005-4838, CVE-2006-7196, CVE-2007-1358, CVE-2007-2449, CVE-2008-0128, CVE-2009-2696, CVE-2010-1899, CVE-2010-2730, CVE-2010-3972, CVE-2013-2185, CVE-2013-4286, CVE-2013-4322, CVE-2013-4444, CVE-2013-4590, CVE-2013-6357, CVE-2014-0075, CVE-2014-0096, CVE-2014-0099, CVE-2014-0119, CVE-2016-8735, CVE-2020-8022, CVE-2025-24813 | 12/04/2026, 21:39:22 | - |
| 161.118.218.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS31898 | Oracle Corporation | Oracle | 24/03/2026, 18:16:03 | 11/04/2026, 22:32:31 | - | - | - | - | - | - |
| 154.92.52.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Digital Core Technology Co. Limited | 24/03/2026, 18:16:03 | 12/04/2026, 00:46:20 | No | Yes | APT1, APT28, APT32, APT35, APT37, APT38, APT39, Cobalt Group, DragonFly, El-Machete, FIN8, Gamaredon-Group, Kimsuky, Mustang Panda, Packrat, Sandworm Team, The Shadow Brokers, gozi | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 06/04/2026, 03:01:09 | - |
| 2a02:4780:6e:5429::1:18789 | - | 🇧🇷 Brazil | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 24/03/2026, 18:16:03 | 09/04/2026, 01:51:40 | - | - | - | - | - | - |
| 46.224.167.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 24/03/2026, 18:16:03 | 12/04/2026, 22:23:21 | No | No | - | - | 25/03/2026, 11:14:11 | - |
| 172.67.149.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS13335 | Cloudflare, Inc. | Cloudflare | 24/03/2026, 18:16:03 | 24/03/2026, 18:16:23 | Yes | No | - | - | 24/03/2026, 18:27:08 | chinagrovevet.com, burningtreetulsa.com, adamsfamilydentalquincy.com, knollwoodlife.com, premierspineandsports.com, hochmanchiro.com, classicelectricomaha.com, apachehillspoa.org, hzfeidi.com, greenbriercivic.com, qrhoa.org, fricksfashion.com, pineridgeiii.com, lythamcoa.com, 277312.com, deloachechiropractic.com, cityfied.net, oceancovedrive.com, citypantry.com, anlink.net, hmcxjc.com, jindianglass.net, shsinotech.com, vbankph.com, maderahomeownersassn.org, ashlandparkpoa.com, blackoakanimalhospital.net, etz.co.uk, ekakitchen.com, edgewatercovehoa.com, owlmediadesign.com, windmillvillage.org, wisehousetech.com, cloudflare.net, dh3west.com, vur.co.uk, orangeparkchiropractic.com, martinscrossinghoa.org, databrick.com, hhpoia.com, kidsbud.net, nabilibrahimdds.com, jxlingtong.com, nardini.com, rioverdevista.com, baselinewoods.com, sailfishvillage.com, vsgroup.com.br, culturalcare.com, oceanlaneplaza170.org, cleanzoneheating.com, alghanitex.com, qzz.io, indiantownassociation.org, orchardfarmshoa.com, photo-video-aerienne.fr, brownsprinting.com, xxglasses.net, arras-hoa.com, cloudhq-mkt6.net, analytica.com, forwardwirecloth.net, fgb.co.uk, hamletrva.com, hawthornebridgecourt.com, woodwayhighlands.com, truemediaservices.com, woodworksrefinish.com, cascadesclinton.com, shipwatchvillagehoa.com, jefferys.co.uk, refee.net, xjzljt.net, sxgas.net, wakechem.com, lakeviewvillasatalvamar.com, oystergroup.co.nz, weareaudio.com, sanhoos.com, arborhills.vet, kinsleyforest.org, penninelearning.com, bamko.net, ausarabbusinesscouncil.com, creditop.com, mountainharbourtn.com, hansecontrol.com, it.com, outbook.com, oukay.net, desertgreenscommunity.org, irrigationsystems4u.com, ventnor-o.com, palmpointepalmisles.org, cloudlandatlookout.com, nwcomaha.com, reserveboulder.com, mql.co.uk, china-one.net, kingdisplay.net, eu.org, scheduleme.org, orangewoodcoa.com, sandyhookyce.org, com.de, kingswood3.com, biocro.net, mydhaga.com, tomahawkcreek.net, coastalstheone.com, zvagostillwater.com, myi.co.uk, wscainc.com, forestcovepoa.net, skybryce.org, drharkey.com, koleta.com.br, oldemillcreekpoa.com, ambassadorhousehoa.com, dsv.co.uk, humidordiscount.com, mainstreetvetclinictx.com, lambcountyvet.net, lakevistapoa.com, storage.co.uk, springeyeassociates.com, sixlakescountryclub.com, ranscustombuilders.com, wskypoa.com, cpimediagroup.com, blueberrymeadowshoa.com, lamplighterlane.com, oracle-ag.ch, zhaowoo.net, seminolelakehoa.com, chedermenachem.org, forestpineshoa.com, gulfshoreorthodontics.com, tracydentaloffice.com, 247techies.com, fomededesafio.com.br, bestwanhui.com, ermissolutions.com, stsmoa.com, oceanbreezeofamelia.org, michiny.com, kao.co.uk, as-associates.net, thecottagesatcontentmentisland.org, lakewoodparkpoa.com, workers.dev, highpointwestcondos.com, tigerexpressfuel.com, corpuspodiatrist.com, magpt.com, 360-xj.com, playosmo.com, xjwfcj.com, printbigja.com, letoilehoa.com, villarosahoafl.com, epernaycommunity.com, oakbrookestateschatham.com, meeshamoultonlaw.com, etlpodiatry.com, zsnet.net, drliska.net, carmaxbolivia.com, southforkrancheshoa.org, 963865.com, cuerie.com, nostringsattachedmusic.net, manorsatwaterford.com, china114.net, tontohillswater.org, smartbuildings.com, timbercreekpoa.net, tropicaleyes.com, wildwoodresortcity.com, harwoodc.com, vulcanrussias.vip, wickiupah.com, backcovedental.com, hy189.net, idoceanside1.com, alaskaperiodontics.com, xjhongshun.com, vanitygroup.com, genspark.net, equinehealthservices.com, jacksonautomotive.com, sanddollarshores.org, geochem.org, onlineassignmentexpert.com, micks.co.uk, equinaceaprodutosnaturais.com, dmln.net, cartons.co.uk |
| 3.237.253.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 24/03/2026, 18:16:03 | 31/03/2026, 04:28:30 | No | No | - | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 31/03/2026, 04:32:15 | - |
| 154.213.115.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Digital Core Technology Co. Limited | 24/03/2026, 18:16:03 | 11/04/2026, 10:51:57 | - | - | - | - | - | - |
| 60.205.125.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:03 | 24/03/2026, 18:16:03 | - | - | - | - | - | - |
| 39.98.188.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:03 | 12/04/2026, 00:47:13 | - | - | - | - | - | - |
| 47.103.215.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:03 | 24/03/2026, 18:16:03 | - | - | - | - | - | - |
| 147.45.71.•••:18789 | - | 🇦🇹 Austria | - | true | Leaked | AS210644 | AEZA GROUP LLC | Aeza Group | 24/03/2026, 18:16:03 | 09/04/2026, 23:28:06 | Yes | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 09/04/2026, 18:07:59 | opengw.net, rs.ba, vpngate.net, dvrdydns.com |
| 123.155.10.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4837 | CHINA UNICOM China169 Backbone | China Unicom Zhejiang | 24/03/2026, 18:16:03 | 24/03/2026, 18:16:03 | - | - | - | - | - | - |
| 47.93.43.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:16:03 | 24/03/2026, 18:16:03 | - | - | - | - | - | - |
| 1.196.92.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4134 | Chinanet | ChinaNet Henan Province Network | 24/03/2026, 18:16:02 | 30/03/2026, 11:14:29 | - | - | - | - | - | - |
| 204.168.129.•••:18789 | - | 🇫🇮 Finland | Yes | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 24/03/2026, 18:16:02 | 11/04/2026, 10:51:47 | No | No | - | - | 02/04/2026, 22:53:41 | - |
| 93.127.143.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS401479 | Database Mart LLC | Database Mart LLC | 24/03/2026, 18:16:02 | 12/04/2026, 20:08:15 | - | - | - | - | - | - |
| 101.43.111.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 24/03/2026, 18:16:02 | 12/04/2026, 00:46:03 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 31/03/2026, 08:13:49 | tencent.com |
| 82.157.116.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 24/03/2026, 18:16:02 | 12/04/2026, 00:47:11 | No | Yes | APT37, El-Machete | CVE-2024-7347 | 05/04/2026, 22:31:19 | - |
| 104.21.29.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 24/03/2026, 18:16:02 | 24/03/2026, 18:16:02 | - | - | - | - | - | - |
| 129.121.84.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS31898 | Oracle Corporation | OGTIPS1 | 24/03/2026, 18:16:02 | 30/03/2026, 10:30:48 | - | - | - | - | - | - |
| 91.6.101.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS3320 | Internet service provider operations | Deutsche Telekom | 24/03/2026, 18:16:02 | 24/03/2026, 18:16:02 | - | - | - | - | - | - |
| 45.204.227.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS139880 | OWGELS INTERNATIONAL CO., LIMITED | Ares IDC Limited | 24/03/2026, 18:16:02 | 12/04/2026, 13:42:33 | No | No | - | - | 03/04/2026, 10:06:58 | - |
| 35.208.107.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS15169 | Google LLC / AS19527 Google LLC | 24/03/2026, 18:16:02 | 31/03/2026, 11:12:23 | - | - | - | - | - | - | |
| 47.84.135.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud | 24/03/2026, 18:16:02 | 24/03/2026, 18:16:02 | - | - | - | - | - | - |
| 64.188.60.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS210976 | Timeweb, LLP | Taiwan Cloud | 24/03/2026, 18:16:02 | 10/04/2026, 00:58:06 | No | Yes | APT-C-23, APT10, APT15, APT19, APT27, APT28, APT29, APT30, APT33, APT34, APT35, APT37, APT39, APT40, APT41, APT5, AQUATIC PANDA, Antlion APT, BRONZE ATLAS, Bluenoroff, Bronze Butler APT, Buhtrap Group, Carbanak, Cobalt Group, CopyKittens, DarkHydrus, DragonOK APT, Earth Berberoka, Energetic Bear, Equation Group, Gamaredon Group, Greenbug Group, Hafnium Group, Inception Framework, Konni Group, Lazarus Group, Moses Staff APT, MuddyWater Group, Orangeworm, Sandworm Team, Silence Hacker Group, TA505, The Shadow Brokers, Thrip APT, Triton APT, Tropic Trooper, Volatile Kitten | CVE-2014-3562, CVE-2014-4650, CVE-2015-3456, CVE-2015-5741, CVE-2015-6815, CVE-2016-2124, CVE-2016-2183, CVE-2016-6662, CVE-2017-1000376, CVE-2017-5645, CVE-2017-9953, CVE-2018-1059, CVE-2018-10869, CVE-2018-10892, CVE-2018-10926, CVE-2018-1111, CVE-2018-1128, CVE-2018-1129, CVE-2018-14462, CVE-2018-14463, CVE-2018-14465, CVE-2018-14469, CVE-2018-14622, CVE-2018-14645, CVE-2018-14879, CVE-2018-14882, CVE-2018-16229, CVE-2018-16540, CVE-2018-16871, CVE-2018-17456, CVE-2018-18311, CVE-2018-20615, CVE-2018-3665, CVE-2018-3760, CVE-2019-10196, CVE-2019-11038, CVE-2019-11477, CVE-2019-11478, CVE-2019-14813, CVE-2019-14815, CVE-2019-14816, CVE-2019-14907, CVE-2019-19906, CVE-2019-3459, CVE-2019-3880, CVE-2019-5798, CVE-2019-6974, CVE-2019-7221, CVE-2019-7317, CVE-2020-10696, CVE-2020-10711, CVE-2020-10749, CVE-2020-10756, CVE-2020-10763, CVE-2020-14318, CVE-2020-14355, CVE-2020-14364, CVE-2020-14370, CVE-2020-14394, CVE-2020-15705, CVE-2020-15706, CVE-2020-15707, CVE-2020-1711, CVE-2020-25639, CVE-2020-25657, CVE-2020-25710, CVE-2020-25717, CVE-2020-25743, CVE-2020-27777, CVE-2020-27786, CVE-2020-27827, CVE-2020-35518, CVE-2020-35524, CVE-2021-20179, CVE-2021-20188, CVE-2021-20229, CVE-2021-20236, CVE-2021-20270, CVE-2021-32027, CVE-2021-3516, CVE-2021-3532, CVE-2021-3533, CVE-2021-3537, CVE-2021-3621, CVE-2021-3669, CVE-2021-3737, CVE-2021-3752, CVE-2021-4104, CVE-2021-41817, CVE-2021-44142, CVE-2021-45417, CVE-2022-0711, CVE-2022-1011, CVE-2022-1227, CVE-2022-1708, CVE-2022-2132, CVE-2022-2393, CVE-2022-2850, CVE-2022-2989, CVE-2022-2990, CVE-2022-32545, CVE-2022-32546, CVE-2023-26590, CVE-2023-32627, CVE-2023-3354, CVE-2023-34318, CVE-2023-34432 | 31/03/2026, 14:57:30 | - |
| 24.35.92.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS54858 | Wave Broadband | Wave Broadband | 24/03/2026, 18:16:02 | 24/03/2026, 18:16:02 | - | - | - | - | - | - |
| 183.156.245.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4134 | Chinanet | ChinaNet Hangzhou | 24/03/2026, 18:16:02 | 24/03/2026, 18:16:02 | - | - | - | - | - | - |
| 115.120.225.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS55990 | Huawei Cloud Service data center | Huawei Cloud | 24/03/2026, 18:16:02 | 11/04/2026, 22:32:36 | Yes | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 30/03/2026, 18:08:57 | smartcom.cc, huawei.com, huaweidevice.com |
| 159.223.104.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:16:01 | 27/03/2026, 10:09:20 | - | - | - | - | - | - |
| 159.195.54.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS197540 | netcup GmbH | Netcup | 24/03/2026, 18:16:01 | 25/03/2026, 10:17:05 | - | - | - | - | - | - |
| 54.215.103.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 24/03/2026, 18:16:01 | 24/03/2026, 18:16:01 | - | - | - | - | - | - |
| 104.131.83.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:16:01 | 08/04/2026, 22:05:16 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 31/03/2026, 04:30:49 | - |
| 2604:2dc0:101:200::2afe:18789 | - | 🇺🇸 United States | - | true | Clean | AS16276 | OVH SAS | OVH US | 24/03/2026, 18:16:01 | 11/04/2026, 10:52:07 | - | - | - | - | - | - |
| 193.112.251.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 24/03/2026, 18:16:00 | 11/04/2026, 03:23:47 | Yes | Yes | APT37, El-Machete | - | 31/03/2026, 12:46:06 | telstra.com.au, muru-d.com, ivision.com.au, medicaldirector.com, bigond.com, telstrainternationalgroup.com, telstra.com, telstra-global.com, bigpond.com, emerging.com.au, telstraglobal.com, telstrainternational.com, telstraglobal.net |
| 193.122.126.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS31898 | Oracle Corporation | Oracle Cloud | 24/03/2026, 18:16:00 | 24/03/2026, 18:16:01 | - | - | - | - | - | - |
| 20.165.247.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 24/03/2026, 18:16:00 | 24/03/2026, 18:16:01 | - | - | - | - | - | - |
| 159.75.153.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 24/03/2026, 18:16:00 | 12/04/2026, 20:53:16 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 09/04/2026, 18:15:37 | - |
| 8.136.206.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 24/03/2026, 18:16:00 | 24/03/2026, 18:16:01 | - | - | - | - | - | - |
| 136.114.38.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 24/03/2026, 18:16:00 | 09/04/2026, 04:06:28 | No | No | - | - | 25/03/2026, 02:13:51 | - | |
| 154.44.25.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Leaked | AS979 | NetLab Global | Cogent Communications | 24/03/2026, 18:16:00 | 10/04/2026, 13:55:47 | Yes | Yes | APT14, APT28, APT35, APT37, APT39, APT40, APT41, Cobalt Group, Equation Group, Gamaredon Group, IronHusky, Kimsuky, Lazarus Group, Mustang Panda, Sandworm Team, SharpPanda, TA505, The Shadow Brokers, UNC2452, WIRTE | CVE-2006-20001, CVE-2017-15710, CVE-2017-15715, CVE-2017-3167, CVE-2017-3169, CVE-2017-7659, CVE-2017-7668, CVE-2017-7679, CVE-2017-9120, CVE-2017-9788, CVE-2017-9798, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-17189, CVE-2018-17199, CVE-2018-19395, CVE-2018-19396, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6977, CVE-2019-9020, CVE-2019-9021, CVE-2019-9022, CVE-2019-9023, CVE-2019-9024, CVE-2019-9517, CVE-2019-9675, CVE-2020-11993, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-33193, CVE-2021-34798, CVE-2021-39275, CVE-2021-40438, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 07/04/2026, 06:32:42 | cogentco.com |
| 172.67.209.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 24/03/2026, 18:16:00 | 25/03/2026, 08:46:47 | - | - | - | - | - | - |
| 45.199.20.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | DingFeng XinHui HK Technology Limited | 24/03/2026, 18:16:00 | 24/03/2026, 18:16:00 | - | - | - | - | - | - |
| 43.130.12.•••:18789 | - | 🇸🇬 Singapore | - | true | Leaked | AS132203 | Tencent Building, Kejizhongyi Avenue | 6 Collyer Quay | 24/03/2026, 18:16:00 | 30/03/2026, 18:47:43 | Yes | No | - | - | 30/03/2026, 11:17:19 | tencent.com |
| 8.137.107.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 24/03/2026, 18:16:00 | 09/04/2026, 07:06:06 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728 | 06/04/2026, 12:01:17 | - |
| 195.246.230.•••:18789 | - | 🇮🇸 Iceland | - | true | Clean | AS44925 | 1984 ehf | 1984 ehf | 24/03/2026, 18:15:59 | 25/03/2026, 10:17:11 | - | - | - | - | - | - |
| 45.55.147.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:15:59 | 24/03/2026, 18:15:59 | - | - | - | - | - | - |
| 92.42.45.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS206996 | ZAP-Hosting GmbH | Deza Hosting | 24/03/2026, 18:15:59 | 24/03/2026, 18:15:59 | - | - | - | - | - | - |
| 64.23.134.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:15:59 | 12/04/2026, 14:21:07 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2023-51767, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 02/04/2026, 13:27:49 | - |
| 18.188.101.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 24/03/2026, 18:15:59 | 12/04/2026, 00:46:10 | No | No | - | - | 24/03/2026, 22:27:03 | - |
| 34.132.168.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 24/03/2026, 18:15:59 | 11/04/2026, 10:52:03 | - | - | - | - | - | - | |
| 115.191.77.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS137718 | Beijing Volcano Engine Technology Co., Ltd. | Beijing Volcano Engine Technology | 24/03/2026, 18:15:59 | 24/03/2026, 18:15:59 | - | - | - | - | - | - |
| 104.248.132.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:15:59 | 01/04/2026, 05:06:52 | - | - | - | - | - | - |
| 154.26.209.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS8796 | FASTNET DATA INC | Kurun Cloud US | 24/03/2026, 18:14:24 | 03/04/2026, 12:37:59 | No | Yes | APT15, APT17, APT28, APT31, APT36, APT37, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 31/03/2026, 02:13:51 | - |
| 209.38.27.•••:18789 | - | 🇦🇺 Australia | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:14:20 | 13/04/2026, 05:32:38 | No | No | - | CVE-2016-20012, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 25/03/2026, 00:36:19 | - |
| 47.242.121.•••:18789 | - | 🇭🇰 Hong Kong | - | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud HK | 24/03/2026, 18:14:16 | 24/03/2026, 18:14:16 | - | - | - | - | - | - |
| 34.61.77.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 24/03/2026, 18:14:16 | 12/04/2026, 00:45:07 | - | - | - | - | - | - | |
| 139.198.30.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS59078 | Yunify Technologies Inc. | Yunify Technologies | 24/03/2026, 18:14:13 | 27/03/2026, 10:07:21 | - | - | - | - | - | - |
| 34.58.172.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS396982 | Google LLC | 24/03/2026, 18:14:13 | 24/03/2026, 18:14:13 | - | - | - | - | - | - | |
| 129.121.46.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS31898 | Oracle Corporation | OGTIPS1 | 24/03/2026, 18:14:13 | 24/03/2026, 18:14:13 | - | - | - | - | - | - |
| 5.189.164.•••:18789 | - | 🇩🇪 Germany | Yes | true | Leaked | AS51167 | Contabo GmbH | Contabo | 24/03/2026, 18:14:13 | 12/04/2026, 17:51:22 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2017-15945, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39929, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 06/04/2026, 17:41:01 | contabo.de, contabo.net |
| 165.232.46.•••:18789 | - | 🇬🇧 United Kingdom | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:14:13 | 24/03/2026, 18:14:13 | - | - | - | - | - | - |
| 77.42.18.•••:18789 | - | 🇫🇮 Finland | Yes | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 24/03/2026, 18:14:13 | 11/04/2026, 04:51:28 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 05/04/2026, 18:42:13 | - |
| 8.155.145.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 24/03/2026, 18:14:13 | 12/04/2026, 15:36:30 | No | No | - | - | 29/03/2026, 01:16:29 | - |
| 104.21.65.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 24/03/2026, 18:14:12 | 24/03/2026, 18:14:12 | - | - | - | - | - | - |
| 47.93.43.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:14:12 | 12/04/2026, 20:05:52 | No | Yes | APT-C-23, APT14, APT15, APT27, APT28, APT31, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Chimera APT, Cobalt Group, DRBControl, Donot Team, Equation Group, Evil Eye APT, Gamaredon Group, Gaza Cybergang, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Night Dragon, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA428, TA505, The Shadow Brokers, Tropic Trooper, UNC2452, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2011-4718, CVE-2013-3735, CVE-2013-5704, CVE-2013-6501, CVE-2013-7327, CVE-2014-0118, CVE-2014-0226, CVE-2014-0236, CVE-2014-2020, CVE-2014-3581, CVE-2014-3583, CVE-2014-3710, CVE-2014-4670, CVE-2014-5459, CVE-2014-8109, CVE-2014-8142, CVE-2014-9425, CVE-2014-9426, CVE-2014-9427, CVE-2014-9652, CVE-2014-9653, CVE-2014-9705, CVE-2014-9709, CVE-2014-9767, CVE-2015-0228, CVE-2015-0231, CVE-2015-0232, CVE-2015-0235, CVE-2015-0273, CVE-2015-1351, CVE-2015-1352, CVE-2015-2301, CVE-2015-2305, CVE-2015-2325, CVE-2015-2326, CVE-2015-2331, CVE-2015-2348, CVE-2015-2783, CVE-2015-2787, CVE-2015-3152, CVE-2015-3183, CVE-2015-3185, CVE-2015-3307, CVE-2015-3329, CVE-2015-3330, CVE-2015-3411, CVE-2015-3412, CVE-2015-3414, CVE-2015-3415, CVE-2015-3416, CVE-2015-4021, CVE-2015-4022, CVE-2015-4024, CVE-2015-4025, CVE-2015-4026, CVE-2015-4116, CVE-2015-4147, CVE-2015-4148, CVE-2015-4598, CVE-2015-4599, CVE-2015-4600, CVE-2015-4601, CVE-2015-4602, CVE-2015-4603, CVE-2015-4604, CVE-2015-4605, CVE-2015-4642, CVE-2015-4643, CVE-2015-4644, CVE-2015-5589, CVE-2015-5590, CVE-2015-6831, CVE-2015-6832, CVE-2015-6833, CVE-2015-6834, CVE-2015-6835, CVE-2015-6836, CVE-2015-6837, CVE-2015-6838, CVE-2015-7803, CVE-2015-7804, CVE-2015-8835, CVE-2015-8838, CVE-2015-8865, CVE-2015-8867, CVE-2015-8873, CVE-2015-8874, CVE-2015-8876, CVE-2015-8877, CVE-2015-8879, CVE-2015-8935, CVE-2015-8994, CVE-2015-9253, CVE-2016-0736, CVE-2016-10158, CVE-2016-10159, CVE-2016-10161, CVE-2016-10397, CVE-2016-10712, CVE-2016-1903, CVE-2016-20012, CVE-2016-2161, CVE-2016-2554, CVE-2016-3141, CVE-2016-3142, CVE-2016-3185, CVE-2016-4070, CVE-2016-4342, CVE-2016-4343, CVE-2016-4537, CVE-2016-4538, CVE-2016-4539, CVE-2016-4540, CVE-2016-4541, CVE-2016-4542, CVE-2016-4543, CVE-2016-4975, CVE-2016-5093, CVE-2016-5094, CVE-2016-5095, CVE-2016-5096, CVE-2016-5114, CVE-2016-5387, CVE-2016-5399, CVE-2016-5768, CVE-2016-5769, CVE-2016-5770, CVE-2016-5771, CVE-2016-5772, CVE-2016-5773, CVE-2016-6288, CVE-2016-6289, CVE-2016-6290, CVE-2016-6291, CVE-2016-6292, CVE-2016-6294, CVE-2016-6295, CVE-2016-6296, CVE-2016-6297, CVE-2016-7124, CVE-2016-7125, CVE-2016-7126, CVE-2016-7127, CVE-2016-7128, CVE-2016-7129, CVE-2016-7130, CVE-2016-7131, CVE-2016-7132, CVE-2016-7411, CVE-2016-7412, CVE-2016-7413, CVE-2016-7414, CVE-2016-7416, CVE-2016-7417, CVE-2016-7418, CVE-2016-7478, CVE-2016-8612, CVE-2016-8743, CVE-2016-9137, CVE-2016-9138, CVE-2016-9934, CVE-2016-9935, CVE-2017-11142, CVE-2017-11143, CVE-2017-11144, CVE-2017-11145, CVE-2017-11147, CVE-2017-11628, CVE-2017-12933, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-16642, CVE-2017-3167, CVE-2017-3169, CVE-2017-7272, CVE-2017-7679, CVE-2017-7890, CVE-2017-7963, CVE-2017-8923, CVE-2017-9224, CVE-2017-9225, CVE-2017-9226, CVE-2017-9229, CVE-2017-9788, CVE-2017-9798, CVE-2018-10545, CVE-2018-10546, CVE-2018-10547, CVE-2018-10548, CVE-2018-10549, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-14851, CVE-2018-14883, CVE-2018-15132, CVE-2018-15473, CVE-2018-15919, CVE-2018-17082, CVE-2018-17199, CVE-2018-19395, CVE-2018-19396, CVE-2018-19520, CVE-2018-20685, CVE-2018-20783, CVE-2018-5711, CVE-2018-5712, CVE-2018-7584, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-6977, CVE-2019-9020, CVE-2019-9021, CVE-2019-9023, CVE-2019-9024, CVE-2019-9637, CVE-2019-9638, CVE-2019-9639, CVE-2019-9641, CVE-2020-11985, CVE-2020-13938, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2021-26690, CVE-2021-26691, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31628, CVE-2022-31629, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-41741, CVE-2022-41742, CVE-2023-25690, CVE-2023-28625, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2023-48795, CVE-2023-51385, CVE-2024-24795, CVE-2024-4577, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 31/03/2026, 08:56:49 | - |
| 43.143.113.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 24/03/2026, 18:14:12 | 24/03/2026, 18:14:12 | - | - | - | - | - | - |
| 172.67.72.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 24/03/2026, 18:14:12 | 01/04/2026, 19:24:20 | - | - | - | - | - | - |
| 5.161.46.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS213230 | Hetzner Online GmbH | Hetzner Online | 24/03/2026, 18:14:12 | 24/03/2026, 18:14:12 | - | - | - | - | - | - |
| 154.213.119.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Digital Core Technology Co. Limited | 24/03/2026, 18:14:12 | 12/04/2026, 00:44:23 | - | - | - | - | - | - |
| 111.228.41.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS141679 | China Telecom Beijing Tianjin Hebei Big Data Industry Park Branch | Jingdong Headquarters | 24/03/2026, 18:14:12 | 04/04/2026, 19:50:10 | - | - | - | - | - | - |
| 39.98.94.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:14:12 | 10/04/2026, 17:42:26 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 30/03/2026, 01:40:24 | aliyun.com |
| 35.226.91.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 24/03/2026, 18:14:12 | 11/04/2026, 10:49:59 | No | Yes | DragonFly, Packrat | - | 05/04/2026, 18:43:25 | - | |
| 58.222.206.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS4134 | Chinanet | ChinaNet Jiangsu | 24/03/2026, 18:14:12 | 12/04/2026, 13:06:09 | Yes | Yes | APT-C-23, Gamaredon Group, Ghostwriter, Lazarus Group, Turla APT Group, Volt Typhoon | CVE-2000-1210, CVE-2001-0590, CVE-2002-0493, CVE-2005-4838, CVE-2006-20001, CVE-2006-7196, CVE-2007-1358, CVE-2007-2449, CVE-2008-0128, CVE-2009-2696, CVE-2013-2185, CVE-2013-4286, CVE-2013-4322, CVE-2013-4444, CVE-2013-4590, CVE-2013-6357, CVE-2014-0075, CVE-2014-0096, CVE-2014-0099, CVE-2014-0119, CVE-2016-8735, CVE-2020-8022, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-31122, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-7347, CVE-2025-23048, CVE-2025-23419, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-66200 | 03/04/2026, 20:55:42 | bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, ideal.sh.cn, daqu.com.cn, ctyun.cn |
| 47.94.58.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:14:12 | 24/03/2026, 18:14:12 | - | - | - | - | - | - |
| 198.44.176.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS154321 | CORENET CLOUD SDN. BHD. | HK Cloud X-2 | 24/03/2026, 18:14:12 | 12/04/2026, 00:45:00 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 02/04/2026, 09:39:17 | - |
| 43.156.233.•••:18789 | - | 🇸🇬 Singapore | - | true | Clean | AS132203 | Tencent Building, Kejizhongyi Avenue | Aceville Pte Ltd | 24/03/2026, 18:14:12 | 31/03/2026, 07:26:06 | - | - | - | - | - | - |
| 111.178.110.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4134 | Chinanet | ChinaNet Hubei | 24/03/2026, 18:14:11 | 24/03/2026, 18:14:11 | - | - | - | - | - | - |
| 154.199.35.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS139880 | OWGELS INTERNATIONAL CO., LIMITED | Ares IDC Limited | 24/03/2026, 18:14:11 | 11/04/2026, 03:21:24 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 04/04/2026, 23:07:59 | - |
| 209.38.28.•••:18789 | - | 🇦🇺 Australia | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:14:11 | 13/04/2026, 05:32:36 | No | - | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 03/04/2026, 19:23:59 | - |
| 31.177.83.•••:18789 | - | 🇷🇺 Russia | Yes | true | Clean | AS44112 | SpaceWeb Ltd | SpaceWeb | 24/03/2026, 18:14:11 | 10/04/2026, 03:50:41 | - | - | - | - | - | - |
| 150.241.122.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS49791 | Newserverlife LLC | Anton Levin | 24/03/2026, 18:14:11 | 27/03/2026, 10:06:29 | - | - | - | - | - | - |
| 38.76.220.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS401701 | cognetcloud INC | FOJ IP Technology | 24/03/2026, 18:14:11 | 24/03/2026, 18:14:11 | - | - | - | - | - | - |
| 165.22.179.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:14:11 | 12/04/2026, 00:44:10 | No | Yes | APT15, APT17, APT28, APT31, APT32, APT35, APT36, APT37, APT39, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2017-12172, CVE-2017-15098, CVE-2017-15099, CVE-2018-1052, CVE-2018-1053, CVE-2018-1058, CVE-2018-10915, CVE-2018-10925, CVE-2018-1115, CVE-2018-15473, CVE-2018-15919, CVE-2018-16850, CVE-2018-20685, CVE-2019-10130, CVE-2019-10164, CVE-2019-10208, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9193, CVE-2020-10733, CVE-2020-14145, CVE-2020-14349, CVE-2020-14350, CVE-2020-1720, CVE-2020-25694, CVE-2020-25695, CVE-2020-25696, CVE-2021-23214, CVE-2021-23222, CVE-2021-32027, CVE-2021-32028, CVE-2021-41617, CVE-2021-43767, CVE-2022-1552, CVE-2022-2625, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 31/03/2026, 01:26:47 | - |
| 106.75.20.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS9808 | China Mobile Communications Group Co., Ltd. | UCloud | 24/03/2026, 18:14:11 | 24/03/2026, 18:14:11 | - | - | - | - | - | - |
| 152.42.198.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:14:11 | 13/04/2026, 12:50:53 | No | - | - | CVE-2017-15945, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-6531, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 04/04/2026, 01:12:41 | - |
| 39.98.71.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 24/03/2026, 18:14:11 | 12/04/2026, 00:44:40 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 30/03/2026, 09:00:33 | aliyun.com |
| 39.107.198.•••:18789 | - | 🇽🇽 XX | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Unknown | 24/03/2026, 18:14:11 | 11/04/2026, 23:15:11 | Yes | No | - | - | 27/03/2026, 11:28:21 | aliyun.com, aliyuncs.com |
| 13.228.135.•••:18789 | - | 🇸🇬 Singapore | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services | 24/03/2026, 18:14:11 | 24/03/2026, 18:14:11 | - | - | - | - | - | - |
| 139.59.160.•••:18789 | - | 🇬🇧 United Kingdom | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 24/03/2026, 18:14:10 | 13/04/2026, 12:49:52 | No | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Carbanak, Cobalt Group, DarkHotel Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2015-8325, CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-20012, CVE-2016-3115, CVE-2016-6210, CVE-2016-6515, CVE-2016-8858, CVE-2017-15906, CVE-2017-20005, CVE-2017-7529, CVE-2018-15473, CVE-2018-15919, CVE-2018-16843, CVE-2018-16844, CVE-2018-16845, CVE-2018-20685, CVE-2019-20372, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-29323, CVE-2023-35784, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 05/04/2026, 09:00:59 | - |
| 178.104.100.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 24/03/2026, 18:14:10 | 24/03/2026, 18:14:10 | - | - | - | - | - | - |