🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 1076720 Page: 3127 / 10768 (100 per page) Showing: 312601-312700 Last Imported: 10/09/2026, 14:51:48
🇨🇳 507,651
🇺🇸 312,129
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 47.96.16.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:31:18 | 10/04/2026, 14:44:23 | No | No | - | - | 04/04/2026, 14:48:20 | - |
| 80.209.240.•••:18789 | - | 🇺🇸 United States | Yes | false | Leaked | AS395839 | HOSTKEY | Hostkey USA | 10/04/2026, 09:31:17 | 16/04/2026, 13:00:59 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2019-12519, CVE-2020-11945, CVE-2020-12062, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-15810, CVE-2020-15811, CVE-2020-24606, CVE-2020-25097, CVE-2021-28041, CVE-2021-28116, CVE-2021-28651, CVE-2021-28652, CVE-2021-28662, CVE-2021-31806, CVE-2021-31807, CVE-2021-31808, CVE-2021-33620, CVE-2021-36368, CVE-2021-41617, CVE-2021-46784, CVE-2022-41317, CVE-2022-41318, CVE-2023-28531, CVE-2023-38408, CVE-2023-46724, CVE-2023-46728, CVE-2023-46846, CVE-2023-46847, CVE-2023-48795, CVE-2023-49285, CVE-2023-49286, CVE-2023-49288, CVE-2023-50269, CVE-2023-51384, CVE-2023-51385, CVE-2023-5824, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 14:48:21 | hostkey.com |
| 3.106.124.•••:18789 | - | 🇦🇺 Australia | Yes | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Corporate Services | 10/04/2026, 09:31:17 | 22/05/2026, 15:20:33 | No | No | - | - | 04/04/2026, 14:48:26 | - |
| 103.6.234.•••:443 | - | 🇻🇳 Vietnam | Yes | false | Leaked | AS152992 | ONLINE DATA COMPANY LIMITED | Hasaki Vietnam Security Services | 10/04/2026, 09:31:17 | 07/07/2026, 15:58:18 | Yes | No | - | - | 10/04/2026, 14:48:27 | vnnic.vn |
| 43.161.237.•••:443 | - | 🇸🇬 Singapore | Yes | false | Leaked | AS132203 | Tencent Building, Kejizhongyi Avenue | Aceville Pte Ltd | 10/04/2026, 09:31:17 | 11/04/2026, 06:26:29 | Yes | No | - | - | 10/04/2026, 14:48:29 | tencent.com |
| 119.45.100.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 10/04/2026, 09:31:17 | 09/09/2026, 11:54:43 | Yes | Yes | APT37, El-Machete, Packrat | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 14:48:35 | tencent.com |
| 52.209.116.•••:443 | - | 🇮🇪 Ireland | Yes | false | Leaked | AS16509 | Amazon.com, Inc. | Amazon Data Services Ireland | 10/04/2026, 09:31:16 | 12/04/2026, 23:54:24 | Yes | Yes | APT-C-23, APT36, Cobalt Group, Equation Group, Gamaredon Group, Ghostwriter, Lazarus Group, Turla APT Group, Volt Typhoon | CVE-2015-9251, CVE-2019-11358, CVE-2020-11022, CVE-2020-11023, CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487 | 10/04/2026, 14:48:41 | everestsnacks.ie, comeon.com, egl.tv, betssongroup.com, cleverlending.co.uk, digitalrewardsgroup.co.uk, amgeneralinsurance.com, twycrosszoo.org, ristorantecost.it, ramarketingpr.com, low6.com, paylinksolutions.co.uk, safeco.com, betwarrior.bet, betonline.ag, americancasinoguide.com, vegasslotsonline.com, deltabingo.com, sportpesa.co.za, bigteasebingo.com, libertyseguros.com.pe, pnimg.net, stats.com, 138comet.dk, sportpesa.com, lasvegascasino.com, puttshack.com, ticasino.com, kurnia.com, senha-yuzu.jp, rizk.com, inkabet.pe, xbet.ag, webpu.sh, thepools.com, lic.jp, betsson.com, ironshore.com, mybookie.ag, libertygts.com, nordicbet.com, libertyinsurance.in, thesun.co.uk, libertyseguros.com.br, guts.com, chill.ie, goldeneagle-ins.com, firmdalehotels.com, gordonramsayacademy.com, totemic.co.uk, lmig.com, commissionkings.ag, betsson.co, libertygestures.ie, sportening.com, comparioninsurance.com, axilis.com, kwiff.com, rasset.ie, libertymutualcanada.com, gordonramsay.com, statsperform.com, rtegroup.ie, liveroulette.com, supercasino.com, coolbet.com, peerless-ins.com, emailcenteruk.com, jackpot247.com, icover.my, xtremepush.com, betzone.co.uk, winwin.ie, worcestershirewildlifeconsultancy.org, ivernia.ie, kidspass.co.uk, rte.ie, 10bet.co.uk, libertyglobalgroup.com, libertyspecialtymarketsap.com, bonniebingo.com, napoleongames.be, performgroup.com, lsmcert.com, superbet.com, libertyinsurance.ie, squawka.com, viajar.jp, libertyseguros.com.co, gordonramsayrestaurants.com, eberlevivian.com, entertainment.ie, totemicgroup.co.uk, betsafe.com, supermacs.ie, liberty.cl, taylorhawkes.com, amassurance.com.my, libertyspecialitymarkets.com, gamelounge.com, covermy.co.uk, libertyiu.com |
| 95.164.62.•••:8443 | - | 🇧🇪 Belgium | Yes | false | Clean | AS209847 | WorkTitans B.V. | The Hosting | 10/04/2026, 09:31:16 | 16/04/2026, 14:31:17 | No | - | - | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 14:48:42 | - |
| 43.136.176.•••:18888 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 10/04/2026, 09:31:15 | 10/04/2026, 14:44:22 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 10/04/2026, 14:48:50 | tencent.com |
| 137.184.91.•••:80 | - | 🇺🇸 United States | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:15 | 08/09/2026, 10:57:32 | No | Yes | APT-C-23, APT1 Comment Crew, APT15, APT17, APT27, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Earth Longzhi, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2015-9251, CVE-2016-20012, CVE-2019-11358, CVE-2019-16905, CVE-2020-11022, CVE-2020-11023, CVE-2020-14145, CVE-2020-15778, CVE-2020-23064, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-31122, CVE-2023-43622, CVE-2023-44487, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 14:48:56 | - |
| 38.127.47.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS18978 | Enzu Inc | Enzu | 10/04/2026, 09:31:15 | 08/09/2026, 04:33:06 | No | - | - | - | 04/04/2026, 14:48:58 | - |
| 116.203.98.•••:18789 | - | 🇩🇪 Germany | Yes | false | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 10/04/2026, 09:31:15 | 09/09/2026, 21:05:29 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Gamaredon Group, Kimsuky, Mustang Panda, Salt Typhoon, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 14:49:01 | hetzner.de |
| 46.224.162.•••:18789 | - | 🇩🇪 Germany | Yes | false | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 10/04/2026, 09:31:15 | 12/08/2026, 17:51:39 | No | No | - | - | 04/04/2026, 14:49:09 | - |
| 204.168.255.•••:18789 | - | 🇫🇮 Finland | Yes | false | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 10/04/2026, 09:31:15 | 24/05/2026, 05:49:19 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 21/05/2026, 10:23:57 | hetzner.com |
| 108.136.222.•••:443 | - | 🇮🇩 Indonesia | - | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services Jakarta | 10/04/2026, 09:31:14 | 10/04/2026, 14:44:21 | - | - | - | - | - | - |
| 118.182.99.•••:8084 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS141998 | China Telecom | CHINANET Gansu | 10/04/2026, 09:31:14 | 05/09/2026, 10:03:03 | Yes | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 16/04/2026, 16:02:25 | bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, ideal.sh.cn, daqu.com.cn, ctyun.cn |
| 119.45.180.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 10/04/2026, 09:31:14 | 17/04/2026, 04:06:43 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT36, APT37, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Packrat, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-16845, CVE-2018-20685, CVE-2019-16905, CVE-2019-20372, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 13/04/2026, 18:52:02 | tencent.com |
| 163.7.1.•••:18789 | - | 🇸🇬 Singapore | Yes | false | Leaked | AS150436 | Byteplus Pte. Ltd. | Byteplus | 10/04/2026, 09:31:14 | 28/07/2026, 06:46:54 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 13/04/2026, 18:01:11 | bytedance.com |
| 111.172.26.•••:9000 | - | 🇨🇳 China mainland | Yes | false | Clean | AS4134 | Chinanet | ChinaNet Hubei | 10/04/2026, 09:31:14 | 10/04/2026, 14:44:21 | - | - | - | - | - | - |
| 161.35.242.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:14 | 09/09/2026, 09:46:56 | No | Yes | Salt Typhoon | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 13/04/2026, 21:03:12 | - |
| 46.101.113.•••:18789 | - | 🇩🇪 Germany | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:14 | 10/04/2026, 14:44:21 | - | - | - | - | - | - |
| 54.221.27.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 10/04/2026, 09:31:14 | 10/04/2026, 14:44:21 | - | - | - | - | - | - |
| 3.36.85.•••:443 | - | 🇰🇷 South Korea | Yes | false | Clean | AS16509 | Amazon.com, Inc. | AWS Seoul Region | 10/04/2026, 09:31:14 | 09/09/2026, 19:40:48 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 13/04/2026, 15:02:57 | - |
| 51.79.68.•••:18789 | - | 🇨🇦 Canada | Yes | false | Clean | AS16276 | OVH SAS | OVH Hosting | 10/04/2026, 09:31:14 | 10/04/2026, 14:44:20 | - | - | - | - | - | - |
| 47.113.203.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:31:14 | 12/04/2026, 23:54:21 | - | - | - | - | - | - |
| 87.120.219.•••:8443 | - | 🇬🇧 United Kingdom | Yes | false | Leaked | AS215540 | GLOBAL CONNECTIVITY SOLUTIONS LLP | Global Connectivity Solutions | 10/04/2026, 09:31:13 | 10/04/2026, 15:31:07 | Yes | Yes | El-Machete | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:31:55 | nestlabs.com, googlegroup.com, guge.com, teracent.com, googlepay.com, ccaiplatform.com, google.fi, webcomponents.org, socratic.com, gmail.co, goolgle.com, google.cloud, googlee.com, atlantic-quantum.com, fabric.io, glasscollective.com, google.ie, google.com.ua, adometry.com, moodstocks.com, google.ac, measuremap.com, google2.com, google.us, googlepages.com, gmail.co.in, polymer-project.org, mdialog.com, gogole.com, comyoutube.com, freebase.com, chromium.org, business.site, invitemedia.com, qwiklabs.net, googlemaps.com, recaptcha.net, crr.com, wearewild.us, decryptcryptolocker.com, saynow.com, titanaerospace.com, run.app, webpkgcache.com, googlevideo.com, admob.com, cdap.io, ggogle.com, googletemp.com, gexperiments3.com, glail.com, gooogle.com, gmale.com, siemplify.co, gexperiments1.com, googlete.com, youtube.org, google.cl, gmailnator.com, webmproject.org, google.com.ly, teracent.net, idx.dev, abcdefghij.com, googleads.com, googlecloudcommunity.com, schema.org, accountchooser.com, krom.com, postini.com, googlehangouts.com, pulse.io, quickoffice.com, chromiumapp.org, womentechmakers.com, ongcp.co, geminicli.com, google.bj, android.com, getmdl.io, timeful.com, apollo-df.dev, dartpad.dev, gmail.cl, brightbytes.net, 1e100cdn.net, aimatter.com, ampproject.org, google.com.qa, nest.com, googles.com, urchin.com, googgle.com, googlegroups.com, google.com.sl, like.com, abc.xyz, bazel.build, getpunchd.com, gmodules.com, revolv.com, keyhole.com, eyefluence.com, ampproject.net, googleworkspace.com, firebaseio.com, yeoman.io, chromeos.dev, doubleclick.com, goooglemail.com, googlechrome.com, googel.com, fuchsia.dev, g-mail.com, tiltbrush.com, webpass.net, adwords.com, angular.dev, google.com.gi, madewithcode.com, disco.com, googler.com, mandiant.org, googlefi.com, google.co.in, gmaial.com, pub.dev, gerritcodereview.com, doubleclick.net, dataliberation.org, gngjd.com, joonix.net, area120.com, google.om, fab.by, googl.com, gppgle.com, googlemail.com, goooglee.com, gsuite.com, google.cat, googleadservices.com, fitbitlearn.com, beatthatquote.com, goolgool.com, goggle.com, famebit.com, globalweathercorp.com, on2.com, bynorth.com, barelydigital.com, gmaul.com, picasa.com, divide.com, yoututbe.com, getintra.org, 2mdn.net, mandiantinc.com, google.gg, simpler.co, enterproid.com, getoutline.org, rewsprojects.com, youtube.net, checkouttest.com, athenawave.com, material.io, google.org, mygbiz.com, gmsail.com, googleautosale.com, google-analytics.com, flutter.dev, cc-dt.com, google.xxx, perspectiveapi.com, google.rs, googsle.com, openhandsetalliance.com, stratozone.com, googleusercontent.com, respond-software.com, edgestatic.com, youtubeaccelerator.com, strivecdn.com, lookercdn.com, gexperiments4.com, test-google-a.com, ggoogle.com, gmail.io, abcdefghijkl.com, ipv6test.com, youtube.co, google.com.ng, googlr.com, mobiledgex.com, youtube.io, youttube.com, autodraw.com, channelintelligence.com, dysonics.com, google.by, velostrata.com, bandpage.com, google.co.ke, googled.co, google.com.tw, looker.com, goo-gle.com, page.link, google.co, google.ru, firebase.com, google.com.pe, chrome.com, youtube.com, yt.com, botsociety.io, kubernetespodcast.com, gogle.com, mindset-media.com, google1.com, myenergy.com, pring.jp, meebo.com, hstspreload.org, scroobly.com, g.co, gmail.com, google.net, wgoogle.com, gmail.ua, androideval.com, intrinsic.ai, google.com.pr, 10youtube.com, barelypolitical.com, agnilux.com, simplemlforsheets.com, google-net.com, v8.dev, raterhub.com, chromecast.com, 1e100.net, youtube.om, psmtp.com, txvia.com, google.com.do, gmail.org, angstro.com, gfiber.com, dmtry.com, google.in, gtempaccount.com, googole.com |
| 47.237.109.•••:80 | - | 🇺🇸 United States | Yes | false | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud | 10/04/2026, 09:31:13 | 17/04/2026, 03:21:48 | - | - | - | - | - | - |
| 3.234.140.•••:443 | - | 🇺🇸 United States | Yes | false | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 10/04/2026, 09:31:13 | 10/04/2026, 15:31:07 | - | - | - | - | - | - |
| 207.244.241.•••:21279 | - | 🇺🇸 United States | Yes | false | Leaked | AS40021 | Contabo Inc. | Contabo | 10/04/2026, 09:31:13 | 08/09/2026, 15:59:46 | Yes | Yes | APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2001-1556, CVE-2002-0061, CVE-2002-0392, CVE-2003-0020, CVE-2003-0083, CVE-2003-0132, CVE-2004-0174, CVE-2004-0942, CVE-2004-2343, CVE-2005-3352, CVE-2006-20001, CVE-2006-5752, CVE-2007-3304, CVE-2007-4465, CVE-2007-6750, CVE-2008-2939, CVE-2009-3555, CVE-2011-0419, CVE-2012-0031, CVE-2012-0053, CVE-2013-1862, CVE-2015-0228, CVE-2016-20012, CVE-2016-8612, CVE-2017-9788, CVE-2017-9798, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-37436, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-40898, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:32:03 | classyng.com, contaboserver.net, contabo.com, contabo.net |
| 172.97.211.•••:18789 | - | 🇨🇦 Canada | Yes | false | Clean | AS11814 | Distributel Communications Limited | Distributel Communications | 10/04/2026, 09:31:12 | 10/04/2026, 15:31:06 | No | No | - | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 10/04/2026, 15:32:19 | - |
| 87.106.143.•••:18789 | - | 🇬🇧 United Kingdom | Yes | false | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | IONOS Cloud BHX1 | 10/04/2026, 09:31:12 | 10/04/2026, 15:31:05 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:32:25 | - |
| 60.216.219.•••:18789 | - | 🇽🇽 XX | Yes | false | Leaked | AS4837 | CHINA UNICOM China169 Backbone | Unknown | 10/04/2026, 09:31:12 | 16/04/2026, 21:20:41 | Yes | Yes | Packrat | CVE-2011-4862, CVE-2021-40491, CVE-2022-39028, CVE-2023-40303 | 10/04/2026, 15:32:26 | chinaunicom.cn |
| 18.224.222.•••:443 | - | 🇺🇸 United States | Yes | false | Clean | AS16509 | Amazon.com, Inc. | Amazon | 10/04/2026, 09:31:12 | 16/04/2026, 19:04:22 | Yes | No | - | - | 10/04/2026, 15:32:31 | scaledcognition.com |
| 152.42.198.•••:443 | - | 🇸🇬 Singapore | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:12 | 16/04/2026, 01:23:48 | No | Yes | APT-C-23, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-1322, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:32:32 | - |
| 78.47.110.•••:18789 | - | 🇩🇪 Germany | Yes | false | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 10/04/2026, 09:31:12 | 10/04/2026, 15:31:05 | Yes | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-20372, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:32:38 | your-server.de, hetzner.com |
| 178.128.23.•••:18789 | - | 🇸🇬 Singapore | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:11 | 03/09/2026, 09:38:40 | Yes | Yes | APT-C-23, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2017-15945, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-25097, CVE-2021-23017, CVE-2021-28041, CVE-2021-28116, CVE-2021-28651, CVE-2021-28652, CVE-2021-28662, CVE-2021-31806, CVE-2021-31807, CVE-2021-31808, CVE-2021-33620, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2021-42340, CVE-2021-43980, CVE-2021-46784, CVE-2022-23181, CVE-2022-29885, CVE-2022-34305, CVE-2022-41317, CVE-2022-41318, CVE-2022-41741, CVE-2022-41742, CVE-2022-42252, CVE-2022-45143, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-46724, CVE-2023-46728, CVE-2023-46846, CVE-2023-46847, CVE-2023-48795, CVE-2023-49285, CVE-2023-49286, CVE-2023-49288, CVE-2023-50269, CVE-2023-51384, CVE-2023-51385, CVE-2023-5824, CVE-2024-25111, CVE-2024-25617, CVE-2024-33427, CVE-2024-37894, CVE-2024-39894, CVE-2024-45802, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-54574, CVE-2025-59362, CVE-2025-61984, CVE-2025-61985, CVE-2025-62168 | 10/04/2026, 15:32:51 | eu.org |
| 95.164.62.•••:8443 | - | 🇧🇪 Belgium | Yes | false | Clean | AS209847 | WorkTitans B.V. | The Hosting | 10/04/2026, 09:31:11 | 15/04/2026, 13:30:24 | No | - | - | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:33:07 | - |
| 212.64.16.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 10/04/2026, 09:31:11 | 16/04/2026, 17:33:20 | No | - | - | - | 04/04/2026, 15:33:10 | - |
| 34.241.93.•••:443 | - | 🇮🇪 Ireland | Yes | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services Ireland | 10/04/2026, 09:31:11 | 10/04/2026, 17:45:57 | No | No | - | - | 04/04/2026, 15:33:13 | - |
| 159.203.120.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:10 | 27/05/2026, 11:14:17 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:33:30 | - |
| 43.106.62.•••:18789 | - | 🇸🇬 Singapore | - | false | Leaked | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Singapore | 10/04/2026, 09:31:10 | 10/04/2026, 15:31:03 | Yes | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:33:31 | alibabacloud.com |
| 101.34.21.•••:32784 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 10/04/2026, 09:31:09 | 02/06/2026, 07:28:34 | Yes | Yes | APT37, El-Machete | - | 10/04/2026, 15:33:35 | tencent.com |
| 217.217.253.•••:18789 | - | 🇩🇪 Germany | Yes | false | Leaked | AS141995 | Contabo Asia Private Limited | Contabo | 10/04/2026, 09:31:09 | 10/04/2026, 15:31:03 | Yes | No | - | - | 10/04/2026, 15:33:39 | contabo.de, contabo.net |
| 47.98.157.•••:16000 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:31:09 | 16/04/2026, 01:22:34 | No | Yes | APT28, APT41, Equation Group | CVE-2010-4478, CVE-2010-5107, CVE-2011-4327, CVE-2011-5000, CVE-2012-0814, CVE-2016-0777 | 10/04/2026, 15:36:44 | - |
| 47.92.125.•••:50001 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:31:09 | 05/06/2026, 13:15:38 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MoustachedBouncer, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, TA505, The Shadow Brokers, Volt Typhoon | CVE-2007-4559, CVE-2013-0340, CVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20406, CVE-2018-20685, CVE-2018-20852, CVE-2019-10160, CVE-2019-15903, CVE-2019-16056, CVE-2019-16905, CVE-2019-16935, CVE-2019-18348, CVE-2019-20907, CVE-2019-5010, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9636, CVE-2019-9674, CVE-2019-9740, CVE-2019-9947, CVE-2019-9948, CVE-2020-14145, CVE-2020-14422, CVE-2020-15523, CVE-2020-15778, CVE-2020-26116, CVE-2020-27619, CVE-2020-8315, CVE-2020-8492, CVE-2021-23336, CVE-2021-28359, CVE-2021-28861, CVE-2021-3177, CVE-2021-3426, CVE-2021-36368, CVE-2021-3733, CVE-2021-3737, CVE-2021-41617, CVE-2021-4189, CVE-2022-0391, CVE-2022-26488, CVE-2022-37454, CVE-2022-45061, CVE-2022-48560, CVE-2022-48564, CVE-2022-48565, CVE-2022-48566, CVE-2023-24329, CVE-2023-27043, CVE-2023-36632, CVE-2023-38408, CVE-2023-40217, CVE-2023-48795, CVE-2023-51385, CVE-2024-0397, CVE-2024-11168, CVE-2024-3219, CVE-2024-4030, CVE-2024-4032, CVE-2024-5642, CVE-2024-6232, CVE-2024-6923, CVE-2024-7592, CVE-2024-8088, CVE-2024-9287, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:36:46 | - |
| 154.81.38.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS140869 | Turing Group Limited | Turing Group Limited | 10/04/2026, 09:31:09 | 16/04/2026, 18:18:41 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 10/04/2026, 15:36:51 | - |
| 154.193.238.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS400619 | AROSSCLOUD INC. | Fastmos Co Limited | 10/04/2026, 09:31:08 | 13/04/2026, 21:47:41 | No | No | - | - | 04/04/2026, 15:36:53 | - |
| 154.193.236.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS400619 | AROSSCLOUD INC. | Fastmos Co Limited | 10/04/2026, 09:31:08 | 12/04/2026, 23:54:38 | No | No | - | - | 04/04/2026, 15:36:59 | - |
| 98.126.102.•••:10083 | - | 🇺🇸 United States | Yes | false | Clean | AS4213 | Krypt Technologies | Krypt Technologies | 10/04/2026, 09:31:08 | 16/04/2026, 22:05:56 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:37:07 | vpls.net, vpls.com |
| 8.130.215.•••:28888 | - | 🇸🇬 Singapore | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 10/04/2026, 09:31:08 | 11/07/2026, 03:41:59 | No | No | - | - | 04/04/2026, 15:37:11 | - |
| 49.232.162.•••:10002 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 10/04/2026, 09:31:08 | 26/05/2026, 14:52:47 | Yes | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-8616, CVE-2020-8617, CVE-2020-8618, CVE-2020-8619, CVE-2020-8620, CVE-2020-8621, CVE-2020-8622, CVE-2020-8623, CVE-2020-8624, CVE-2020-8625, CVE-2021-25214, CVE-2021-25215, CVE-2021-25216, CVE-2021-25219, CVE-2021-25220, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2022-2795, CVE-2022-3094, CVE-2022-38177, CVE-2022-38178, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419 | 10/04/2026, 15:37:12 | tencent.com |
| 89.167.119.•••:18789 | - | 🇫🇮 Finland | Yes | false | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 10/04/2026, 09:31:07 | 14/04/2026, 01:33:43 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:37:25 | - |
| 216.167.72.•••:80 | - | 🇺🇸 United States | Yes | false | Leaked | AS2914 | NTT America, Inc. | NTT Data | 10/04/2026, 09:31:07 | 16/04/2026, 16:47:55 | Yes | No | - | CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 10/04/2026, 15:34:32 | alternativepayments.com, ignatius.edu, nflplayercare.com, openbsd.org, openssh.com, nfl.biz, ntt.net, mod.go.jp, archny.org, gih.com, 2000charge.com, nfl.net |
| 101.66.150.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS4837 | CHINA UNICOM China169 Backbone | Unicom Zhejiang Province Network | 10/04/2026, 09:31:07 | 17/04/2026, 01:06:24 | Yes | No | - | - | 10/04/2026, 15:34:33 | chinaunicom.cn |
| 5.223.87.•••:18789 | - | 🇸🇬 Singapore | Yes | false | Leaked | AS215859 | Hetzner Online GmbH | Hetzner Online | 10/04/2026, 09:31:07 | 09/09/2026, 01:17:32 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:34:35 | hetzner.com |
| 42.51.37.•••:50000 | - | 🇨🇳 China mainland | Yes | false | Clean | AS56005 | Zhengzhou Fastidc Technology Co.,Ltd. | Henan Telcom Union Technology | 10/04/2026, 09:31:07 | 16/04/2026, 21:20:41 | No | No | - | - | 04/04/2026, 15:34:36 | - |
| 95.216.44.•••:18789 | - | 🇫🇮 Finland | Yes | false | Leaked | AS24940 | Hetzner Online GmbH | Hetzner | 10/04/2026, 09:31:07 | 13/04/2026, 18:00:20 | Yes | Yes | Salt Typhoon | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:34:37 | hetzner.com |
| 154.193.234.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS400619 | AROSSCLOUD INC. | Fastmos Co Limited | 10/04/2026, 09:31:07 | 13/04/2026, 19:31:06 | No | No | - | - | 04/04/2026, 15:34:39 | - |
| 56.228.36.•••:443 | - | 🇸🇪 Sweden | Yes | false | Leaked | AS16509 | Amazon.com, Inc. | Amazon Data Services Sweden | 10/04/2026, 09:31:07 | 10/04/2026, 15:31:00 | Yes | No | - | - | 10/04/2026, 15:34:46 | amazon.fr, bookworm.com, usps.gov, amazon.com.br, audible.com, lovefilm.com, amazon.eu, amzaon.com, shippingapis.com, amazaon.com, audible.in, z-exp.com, amozon.com, aws-amazon.com, shopbop.com, accept.com, amazonn.com, boxofficemojo.com, amazonaws-us-gov.com, amaozn.com, awsamazon.com, amazonmusiclocal.com, a9.com, amzzon.com, mturk.com, parcelpostplus.com, amazonaws.cm, uspostalservice.com, com.be, amazonpay.com, rooftopmedia.net, vine.com, imdb.com, ssl-images-amazon.com, amazon.com.au, amazon-rings.com, assoc-amazon.com, amazonin.com, amzn.asia, annapurnalabs.com, apn-portal.com, usps.com, evi.com, amazonprime.com, audiblecareers.com, beautybar.com, junglee.com, amazon.ae, tenmarks.com, amazonwebservices.net, associates-amazon.com, amazonrobotics.com, amazon-aws.com, endless.com, amazonlocal.com, amazonm.com, amazonllc.com, media-imdb.com, amazon.com.tw, createspace.com, amazonaws.com, amzn.com, amazon.com, images-amazon.com, amazon.com.co |
| 108.62.160.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS7203 | Leaseweb USA, Inc. | Leaseweb USA | 10/04/2026, 09:31:07 | 16/04/2026, 13:00:55 | - | - | - | - | - | - |
| 34.174.231.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS396982 | Google LLC | 10/04/2026, 09:31:06 | 16/04/2026, 13:46:13 | - | - | - | - | - | - | |
| 165.1.70.•••:18789 | - | 🇺🇸 United States | Yes | false | Leaked | AS31898 | Oracle Corporation | Oracle | 10/04/2026, 09:31:06 | 10/04/2026, 15:31:00 | Yes | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:35:05 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 217.77.5.•••:20027 | - | 🇩🇪 Germany | Yes | false | Leaked | AS40021 | Contabo Inc. | Contabo | 10/04/2026, 09:31:06 | 16/04/2026, 13:46:16 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:35:11 | contaboserver.net, contabo.de, contabo.net |
| 47.115.252.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:31:06 | 16/04/2026, 19:04:18 | - | - | - | - | - | - |
| 50.6.9.•••:80 | - | 🇺🇸 United States | Yes | false | Leaked | AS31898 | Oracle Corporation | Newfold Digital | 10/04/2026, 09:31:06 | 16/04/2026, 13:46:16 | Yes | No | - | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:35:15 | athenixinc.com, hostmonster.com, site5.com, domain.com, readyhosting.com, homestead.com, endurance.com, mojomarketplace.com, dotster.com, bluehost.com |
| 103.180.118.•••:18789 | - | 🇮🇩 Indonesia | Yes | false | Clean | AS149359 | PT Persada Data Multimedia | Persada Data Multimedia | 10/04/2026, 09:31:06 | 10/04/2026, 15:30:59 | No | No | - | - | 04/04/2026, 15:35:23 | - |
| 176.108.252.•••:443 | - | 🇷🇺 Russia | Yes | false | Leaked | AS208677 | "Cloud Technologies" LLC trading as Cloud.ru | Cloud.ru | 10/04/2026, 09:31:06 | 10/04/2026, 17:45:52 | Yes | Yes | Salt Typhoon | CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 15:35:28 | bk.ru, youla.ru, imgsmail.ru, cloudtech.ie, icq.net, mail.ru, smailru.net, icq.com |
| 46.225.151.•••:18789 | - | 🇩🇪 Germany | Yes | false | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 10/04/2026, 09:31:05 | 15/04/2026, 13:30:12 | No | No | - | - | 04/04/2026, 15:35:36 | - |
| 43.99.55.•••:8443 | - | 🇸🇬 Singapore | Yes | false | Leaked | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Singapore | 10/04/2026, 09:31:05 | 29/05/2026, 07:12:16 | Yes | No | - | - | 22/05/2026, 23:56:22 | alibabacloud.com |
| 178.104.40.•••:18789 | - | 🇩🇪 Germany | Yes | false | Leaked | AS24940 | Hetzner Online GmbH | Hetzner | 10/04/2026, 09:31:05 | 03/07/2026, 20:30:08 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 13/04/2026, 23:18:55 | hetzner.com |
| 52.47.93.•••:443 | - | 🇫🇷 France | Yes | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services | 10/04/2026, 09:31:05 | 17/04/2026, 08:37:17 | - | - | - | - | - | - |
| 124.70.162.•••:80 | - | 🇨🇳 China mainland | Yes | false | Clean | AS55990 | Huawei Cloud Service data center | Huawei Cloud | 10/04/2026, 09:31:04 | 10/04/2026, 15:30:57 | - | - | - | - | - | - |
| 82.165.10.•••:18789 | - | 🇪🇸 Spain | Yes | false | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | IONOS Cloud | 10/04/2026, 09:31:04 | 10/09/2026, 12:00:19 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-14145, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 13/04/2026, 12:18:51 | - |
| 207.244.228.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS40021 | Contabo Inc. | Contabo | 10/04/2026, 09:31:04 | 10/04/2026, 15:30:57 | - | - | - | - | - | - |
| 167.86.100.•••:18789 | - | 🇫🇷 France | Yes | false | Clean | AS51167 | Contabo GmbH | Contabo | 10/04/2026, 09:31:04 | 12/04/2026, 23:54:25 | - | - | - | - | - | - |
| 34.151.208.•••:80 | - | 🇺🇸 United States | Yes | false | Clean | AS396982 | Google LLC | 10/04/2026, 09:31:04 | 17/04/2026, 01:51:26 | No | Yes | DragonFly, Packrat | CVE-2016-20012, CVE-2020-14145, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 16/04/2026, 22:07:03 | - | |
| 36.231.54.•••:18789 | - | 🇹🇼 Taiwan | Yes | false | Clean | AS3462 | Data Communication Business Group | Chunghwa Telecom | 10/04/2026, 09:31:04 | 10/04/2026, 15:30:56 | - | - | - | - | - | - |
| 47.236.160.•••:18789 | - | 🇺🇸 United States | Yes | false | Leaked | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud | 10/04/2026, 09:31:03 | 16/04/2026, 20:35:24 | Yes | Yes | APT-C-23, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 16/04/2026, 20:38:06 | hichina.com, alibaba-inc.com |
| 49.79.92.•••:8443 | - | 🇨🇳 China mainland | Yes | false | Clean | AS4134 | Chinanet | ChinaNet Jiangsu | 10/04/2026, 09:31:03 | 10/04/2026, 15:30:56 | - | - | - | - | - | - |
| 104.237.151.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS63949 | Akamai Connected Cloud | Linode | 10/04/2026, 09:31:03 | 10/04/2026, 15:30:56 | - | - | - | - | - | - |
| 222.230.76.•••:18789 | - | 🇯🇵 Japan | Yes | false | Leaked | AS2519 | ARTERIA Networks Corporation | Arteria Networks | 10/04/2026, 09:31:02 | 16/04/2026, 16:02:32 | Yes | No | - | CVE-2007-4559, CVE-2015-5652, CVE-2017-15945, CVE-2017-17522, CVE-2017-18207, CVE-2019-18348, CVE-2019-9674, CVE-2020-8492, CVE-2021-23336, CVE-2021-3426, CVE-2021-3733, CVE-2022-0391, CVE-2022-26488, CVE-2022-26691, CVE-2022-45061, CVE-2022-48560, CVE-2022-48564, CVE-2022-48565, CVE-2022-48566, CVE-2023-24329, CVE-2023-27043, CVE-2023-36632, CVE-2023-40217, CVE-2024-0397, CVE-2024-11168, CVE-2024-3219, CVE-2024-4032, CVE-2024-5642, CVE-2024-6232, CVE-2024-6923, CVE-2024-7592, CVE-2024-8088, CVE-2024-9287, CVE-2025-12084, CVE-2025-12781, CVE-2025-13836, CVE-2025-13837, CVE-2025-6075 | 13/04/2026, 18:03:22 | macmadigan.com, chickenkiller.com, quickconnect.to, fastspeed.dk, arteria-net.com, synology.me |
| 47.92.208.•••:50001 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:31:02 | 03/06/2026, 23:26:00 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617 | 13/04/2026, 12:18:54 | - |
| 38.55.204.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS400619 | AROSSCLOUD INC. | PEG Technology | 10/04/2026, 09:31:02 | 10/04/2026, 15:30:55 | - | - | - | - | - | - |
| 2a02:4780:f:b8e2::1:18789 | - | 🇬🇧 United Kingdom | - | false | Clean | AS47583 | Hostinger International Limited | Hostinger | 10/04/2026, 09:31:02 | 08/09/2026, 18:52:27 | - | - | - | - | - | - |
| 1.117.76.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 10/04/2026, 09:31:01 | 09/09/2026, 00:35:05 | Yes | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387 | 10/04/2026, 16:17:55 | tencent.com |
| 144.91.75.•••:18789 | - | 🇩🇪 Germany | Yes | false | Leaked | AS51167 | Contabo GmbH | Contabo | 10/04/2026, 09:31:01 | 16/04/2026, 19:04:26 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT37, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2022-4900, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-5458, CVE-2024-6387, CVE-2025-26466 | 10/04/2026, 16:18:08 | contabo.de, contabo.net |
| 74.119.194.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS209847 | WorkTitans B.V. | The Hosting | 10/04/2026, 09:31:01 | 16/04/2026, 17:33:22 | Yes | Yes | APT14, APT28, APT35, APT37, APT39, APT40, APT41, Cobalt Group, Gamaredon Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, Mustang Panda, Sandworm Team, SharpPanda, TA505, The Shadow Brokers, WIRTE | CVE-2006-20001, CVE-2013-1896, CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-3581, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-28531, CVE-2023-28625, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 16:18:09 | bga.su |
| 54.116.66.•••:443 | - | 🇰🇷 South Korea | Yes | false | Leaked | AS16509 | Amazon.com, Inc. | Amazon | 10/04/2026, 09:31:01 | 27/05/2026, 22:38:43 | Yes | No | - | CVE-2023-38709, CVE-2024-24795, CVE-2024-27316, CVE-2024-36387, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-6387, CVE-2025-23048, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-61984, CVE-2025-61985, CVE-2025-65082, CVE-2025-66200, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 21/05/2026, 21:06:49 | bookworm.com, lovefilm.com, amazon.eu, amazaon.com, z-exp.com, shopbop.com, accept.com, amazonn.com, boxofficemojo.com, amazonaws-us-gov.com, amaozn.com, awsamazon.com, amazonmusiclocal.com, a9.com, amzzon.com, mturk.com, com.be, amazonpay.com, rooftopmedia.net, vine.com, amazon.com.au, amazon-rings.com, amazonin.com, amzn.asia, apn-portal.com, evi.com, amazonprime.com, audiblecareers.com, beautybar.com, junglee.com, tenmarks.com, amazonwebservices.net, associates-amazon.com, amazonrobotics.com, endless.com, amazonlocal.com, amazonllc.com, media-imdb.com, amazon.com.tw, amazonaws.com, kivasystems.com, amzn.com, amazon.com, thinkboxsoftware.com |
| 14.110.198.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS4134 | Chinanet | Chinanet Chongqing | 10/04/2026, 09:31:00 | 10/04/2026, 16:17:11 | - | - | - | - | - | - |
| 103.146.230.•••:80 | - | 🇭🇰 Hong Kong | Yes | false | Clean | AS401696 | cognetcloud INC | I Layer Limited | 10/04/2026, 09:31:00 | 10/04/2026, 16:17:11 | No | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2022-26691, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 16:18:23 | - |
| 132.226.86.•••:18789 | - | 🇺🇸 United States | Yes | false | Leaked | AS31898 | Oracle Corporation | Oracle Cloud | 10/04/2026, 09:31:00 | 10/09/2026, 09:11:35 | Yes | No | - | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 16:18:24 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, elementfusion.com, netsuiteforms.com, oracleemaildelivery.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 13.233.74.•••:443 | - | 🇮🇳 India | Yes | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services | 10/04/2026, 09:31:00 | 21/05/2026, 09:41:30 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2006-20001, CVE-2016-10708, CVE-2016-20012, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-15473, CVE-2018-15919, CVE-2018-17189, CVE-2018-17199, CVE-2018-20685, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9517, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13938, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2025-23048, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-66200 | 10/04/2026, 16:18:25 | - |
| 44.213.4.•••:18789 | - | 🇺🇸 United States | Yes | false | Leaked | AS14618 | Amazon.com, Inc. | Amazon Web Services | 10/04/2026, 09:31:00 | 07/06/2026, 13:53:31 | Yes | No | - | - | 10/04/2026, 16:18:26 | amazonlightsail.com |
| 104.236.19.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:31:00 | 23/05/2026, 13:44:39 | No | No | - | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 16:18:38 | - |
| 42.51.13.•••:50000 | - | 🇨🇳 China mainland | Yes | false | Clean | AS56005 | Zhengzhou Fastidc Technology Co.,Ltd. | Henan Telcom Union Technology | 10/04/2026, 09:31:00 | 13/07/2026, 15:45:10 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 10/04/2026, 16:18:39 | - |
| 154.81.38.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS140869 | Turing Group Limited | Turing Group Limited | 10/04/2026, 09:31:00 | 16/04/2026, 01:23:06 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 10/04/2026, 16:18:40 | - |
| 35.171.155.•••:443 | - | 🇺🇸 United States | Yes | false | Clean | AS14618 | Amazon.com, Inc. | Amazon | 10/04/2026, 09:31:00 | 10/04/2026, 16:17:11 | No | No | - | - | 04/04/2026, 16:18:45 | - |
| 47.92.241.•••:50001 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 10/04/2026, 09:30:59 | 16/04/2026, 01:23:03 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 16:18:53 | - |
| 82.156.22.•••:19000 | - | 🇨🇳 China mainland | Yes | false | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 10/04/2026, 09:30:59 | 17/04/2026, 07:07:05 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 10/04/2026, 16:18:57 | - |
| 143.198.221.•••:443 | - | 🇸🇬 Singapore | Yes | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 10/04/2026, 09:30:59 | 17/04/2026, 00:21:12 | No | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2016-20012, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 10/04/2026, 10:10:10 | - |