🦞 OpenClaw Exposure Watchboard

This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.

Exposed Instances: 926582 Page: 4024 / 9266 (100 per page) Showing: 402301-402400 Last Imported: 07/06/2026, 03:36:56
Build With Vivgrid

Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com

Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.

Explore Vivgrid
Showing page 4024 of 9266
Endpoint Assistant Name Country auth_requiredis_activehas_leaked_credsasnasn_nameorgfirst_seenlast_seenasi_has_breachasi_has_threat_actorasi_threat_actorsasi_cvesasi_enriched_atasi_domains
122.152.221.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5721/03/2026, 10:36:47 Yes Yes APT37, El-MacheteCVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198521/03/2026, 09:09:56tencent.com
42.193.226.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5706/04/2026, 23:54:46 - - ----
5.223.77.•••:443 - 🇸🇬 Singapore Yes false Leaked AS215859Hetzner Online GmbHHetzner Online15/03/2026, 16:13:5604/06/2026, 14:22:54 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198521/03/2026, 17:43:40hetzner.com
15.204.100.•••:10099 - 🇺🇸 United States Yes false Leaked AS16276OVH SAS[name redacted]15/03/2026, 16:13:5625/03/2026, 06:41:04 Yes Yes APT29, Nobelium, RedCurlCVE-2020-3999, CVE-2024-22252, CVE-2024-22253, CVE-2024-22254, CVE-2024-22255, CVE-2024-2227325/03/2026, 06:05:22ovhcloud.com
43.135.135.•••:18789 - 🇺🇸 United States Yes false Clean AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5631/03/2026, 13:30:07 - - ----
36.138.159.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS9808China Mobile Communications Group Co., Ltd.China Mobile15/03/2026, 16:13:5609/04/2026, 02:39:40 Yes - -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198503/04/2026, 14:14:45chinamobile.com, chinamobile.cn
159.203.70.•••:443 - 🇺🇸 United States Yes false Clean AS14061DigitalOcean, LLCDigitalOcean15/03/2026, 16:13:5619/03/2026, 05:39:00 No Yes APT28, APT41, Equation GroupCVE-2010-4478, CVE-2010-5107, CVE-2011-4327, CVE-2011-5000, CVE-2012-0814, CVE-2016-0777, CVE-2017-15906, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198519/03/2026, 04:26:11-
159.75.16.•••:18888 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5609/04/2026, 13:08:03 No Yes APT37, El-Machete-03/04/2026, 13:32:49-
84.247.152.•••:18789 - 🇯🇵 Japan Yes false Leaked AS141995Contabo Asia Private LimitedContabo15/03/2026, 16:13:5608/04/2026, 13:07:26 Yes Yes APT15, APT17, APT31, APT36, APT37, APT45, Bitter APT, Bluenoroff, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APTCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-3272824/03/2026, 03:15:15contabo.de, contabo.net
117.72.240.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS141679China Telecom Beijing Tianjin Hebei Big Data Industry Park BranchJD.com15/03/2026, 16:13:5609/04/2026, 14:36:11 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198507/04/2026, 01:19:36jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com
47.98.242.•••:80 - 🇨🇳 China mainland Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft15/03/2026, 16:13:5615/03/2026, 23:42:05 - - ----
118.25.21.•••:443 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5621/03/2026, 10:36:31 - - ----
117.72.167.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS141679China Telecom Beijing Tianjin Hebei Big Data Industry Park BranchJD.com15/03/2026, 16:13:5612/04/2026, 15:02:32 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198503/04/2026, 03:48:33jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com
2a02:4780:10:ae34::1:80 - 🇺🇸 United States - false Clean AS47583Hostinger International LimitedHostinger15/03/2026, 16:13:5615/03/2026, 23:42:05 - - ----
8.163.38.•••:18789 - 🇸🇬 Singapore Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud15/03/2026, 16:13:5617/04/2026, 23:14:36 - - ----
121.196.148.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft15/03/2026, 16:13:5605/06/2026, 23:13:25 Yes No -CVE-2014-407819/03/2026, 04:28:25datacamp.co.uk, aliyun.com
121.196.152.•••:443 - 🇨🇳 China mainland Yes false Leaked AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft15/03/2026, 16:13:5604/06/2026, 08:43:56 Yes No --02/04/2026, 17:58:12datacamp.co.uk, aliyun.com
114.132.199.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5615/03/2026, 23:42:05 - - ----
132.232.242.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5619/03/2026, 07:08:52 - - ----
1.92.77.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS55990Huawei Cloud Service data centerHuawei Cloud15/03/2026, 16:13:5610/04/2026, 10:12:33 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198518/03/2026, 12:06:41smartcom.cc, huawei.com, huaweidevice.com
45.55.234.•••:443 - 🇺🇸 United States Yes false Clean AS14061DigitalOcean, LLCDigitalOcean15/03/2026, 16:13:5618/03/2026, 14:18:48 - - ----
43.160.213.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5607/04/2026, 22:05:04 Yes No -CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198507/04/2026, 22:10:11tencent.com
107.148.237.•••:18789 - 🇭🇰 Hong Kong Yes false Clean AS398478PEG TECH INCPolyethylene Glycol-Human Keratin 115/03/2026, 16:13:5615/03/2026, 23:42:05 - - ----
35.88.118.•••:443 - 🇺🇸 United States Yes false Clean AS16509Amazon.com, Inc.Amazon15/03/2026, 16:13:5524/03/2026, 09:57:18 - - ----
43.128.78.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5505/06/2026, 07:36:05 Yes Yes APT-C-23, APT36, Cobalt Group, Equation Group, Gamaredon Group, Ghostwriter, Lazarus Group, Salt Typhoon, Turla APT Group, Volt TyphoonCVE-2006-20001, CVE-2016-20012, CVE-2018-16845, CVE-2019-16905, CVE-2019-20372, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-41741, CVE-2022-41742, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198508/04/2026, 21:22:36tencent.com
43.106.113.•••:443 - 🇸🇬 Singapore Yes false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud Singapore15/03/2026, 16:13:5515/03/2026, 23:42:04 - - ----
121.36.203.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS55990Huawei Cloud Service data centerHuawei Cloud15/03/2026, 16:13:5530/03/2026, 09:03:33 Yes No --27/03/2026, 06:31:04smartcom.cc, huawei.com, huaweidevice.com
111.230.35.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5506/04/2026, 05:15:06 - - ----
99.79.54.•••:443 - 🇨🇦 Canada Yes false Clean AS16509Amazon.com, Inc.Amazon Web Services Canada15/03/2026, 16:13:5516/03/2026, 00:25:06 - - ----
111.229.94.•••:18789 - 🇨🇳 China mainland - false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5515/03/2026, 23:42:04 - - ----
8.216.44.•••:443 - 🇸🇬 Singapore Yes false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud Singapore15/03/2026, 16:13:5506/06/2026, 23:48:25 No No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198504/04/2026, 17:00:24-
178.104.62.•••:18789 - 🇩🇪 Germany Yes false Clean AS24940Hetzner Online GmbHHetzner15/03/2026, 16:13:5514/04/2026, 00:03:02 - - ----
43.131.244.•••:18789 - 🇸🇬 Singapore Yes false Clean AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5521/03/2026, 22:19:56 - - ----
184.34.19.•••:443 Assistant 🇺🇸 United States Yes false Clean AS16509Amazon.com, Inc.Amazon15/03/2026, 16:13:5522/03/2026, 15:19:55 - - ----
116.198.201.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS137699CHINATELECOM Jiangsu Suqian IDC networkJD.com15/03/2026, 16:13:5505/06/2026, 06:11:13 Yes No -CVE-2014-4078, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198509/04/2026, 23:32:21jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com
111.229.34.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5531/03/2026, 12:00:11 - - ----
103.126.161.•••:18789 - 🇻🇳 Vietnam Yes false Leaked AS135959Onebim Vietnam Limited CompanyOnebim Vietnam15/03/2026, 16:13:5416/04/2026, 12:15:37 Yes Yes APT-C-23, APT10, APT15, APT19, APT27, APT28, APT29, APT30, APT33, APT34, APT35, APT37, APT39, APT40, APT41, APT5, AQUATIC PANDA, Antlion APT, BRONZE ATLAS, Bluenoroff, Bronze Butler APT, Buhtrap Group, Carbanak, Cobalt Group, CopyKittens, DarkHydrus, DragonOK APT, Earth Berberoka, Energetic Bear, Equation Group, Gamaredon Group, Greenbug Group, Hafnium Group, Inception Framework, Kimsuky, Konni Group, Lazarus Group, Moses Staff APT, MuddyWater Group, Mustang Panda, Orangeworm, Sandworm Team, Silence Hacker Group, TA505, The Shadow Brokers, Thrip APT, Triton APT, Tropic Trooper, Volatile KittenCVE-2014-3562, CVE-2014-4650, CVE-2015-3456, CVE-2015-5741, CVE-2015-6815, CVE-2016-10708, CVE-2016-2124, CVE-2016-2183, CVE-2016-6662, CVE-2017-1000376, CVE-2017-15906, CVE-2017-5645, CVE-2017-9953, CVE-2018-1059, CVE-2018-10869, CVE-2018-10892, CVE-2018-10926, CVE-2018-1111, CVE-2018-1128, CVE-2018-1129, CVE-2018-14462, CVE-2018-14463, CVE-2018-14465, CVE-2018-14469, CVE-2018-14622, CVE-2018-14645, CVE-2018-14879, CVE-2018-14882, CVE-2018-15473, CVE-2018-15919, CVE-2018-16229, CVE-2018-16540, CVE-2018-16871, CVE-2018-17456, CVE-2018-18311, CVE-2018-20615, CVE-2018-20685, CVE-2018-3665, CVE-2018-3760, CVE-2019-10196, CVE-2019-11038, CVE-2019-11477, CVE-2019-11478, CVE-2019-14813, CVE-2019-14816, CVE-2019-14907, CVE-2019-19906, CVE-2019-3459, CVE-2019-3880, CVE-2019-5798, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-6974, CVE-2019-7221, CVE-2019-7317, CVE-2020-10696, CVE-2020-10711, CVE-2020-10749, CVE-2020-10756, CVE-2020-10763, CVE-2020-14145, CVE-2020-14318, CVE-2020-14355, CVE-2020-14364, CVE-2020-14370, CVE-2020-14394, CVE-2020-15705, CVE-2020-15706, CVE-2020-15707, CVE-2020-1711, CVE-2020-25639, CVE-2020-25657, CVE-2020-25710, CVE-2020-25717, CVE-2020-25743, CVE-2020-27777, CVE-2020-27786, CVE-2020-27827, CVE-2020-35518, CVE-2020-35524, CVE-2021-20179, CVE-2021-20188, CVE-2021-20229, CVE-2021-20236, CVE-2021-20270, CVE-2021-32027, CVE-2021-3516, CVE-2021-3532, CVE-2021-3533, CVE-2021-3537, CVE-2021-3621, CVE-2021-3669, CVE-2021-3737, CVE-2021-3752, CVE-2021-4104, CVE-2021-41617, CVE-2021-41817, CVE-2021-44142, CVE-2021-45417, CVE-2022-0711, CVE-2022-1011, CVE-2022-1227, CVE-2022-1708, CVE-2022-2132, CVE-2022-2393, CVE-2022-2850, CVE-2022-2989, CVE-2022-2990, CVE-2022-32545, CVE-2022-32546, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-6387, CVE-2024-7347, CVE-2025-23048, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-61984, CVE-2025-6198519/03/2026, 04:38:55vnnic.vn
43.156.186.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5422/03/2026, 15:21:12 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-638719/03/2026, 05:00:50tencent.com
2a02:c207:2314:7690::1:443 - 🇫🇷 France - false Clean AS51167Contabo GmbHContabo15/03/2026, 16:13:5430/03/2026, 11:17:04 - - ----
198.23.176.•••:18789 - 🇺🇸 United States Yes false Leaked AS36352HostPapaRackNerd15/03/2026, 16:13:5405/06/2026, 06:53:59 Yes Yes APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198507/04/2026, 08:51:44racknerd.com
202.182.111.•••:80 - 🇯🇵 Japan Yes false Leaked AS20473The Constant Company, LLCThe Constant Company15/03/2026, 16:13:5417/04/2026, 23:57:36 Yes Yes DragonFlyCVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198521/03/2026, 19:22:16vultr.com
185.243.240.•••:18789 - 🇭🇰 Hong Kong Yes false Clean AS24544Overcasts LimitedSakura Network15/03/2026, 16:13:5404/06/2026, 11:33:16 No No -CVE-2023-44487, CVE-2024-31079, CVE-2024-32760, CVE-2024-34161, CVE-2024-35200, CVE-2024-734702/04/2026, 17:59:09-
124.223.209.•••:18888 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5403/04/2026, 01:31:11 - - ----
2001:41d0:303:715b::1:18789 - 🇫🇷 France - false Clean AS16276OVH SASOVH15/03/2026, 16:13:5417/04/2026, 23:59:09 - - ----
157.245.147.•••:443 - 🇸🇬 Singapore Yes false Clean AS14061DigitalOcean, LLCDigitalOcean15/03/2026, 16:13:5406/06/2026, 07:39:44 No Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12520, CVE-2019-12521, CVE-2019-12522, CVE-2019-12523, CVE-2019-12524, CVE-2019-12525, CVE-2019-12526, CVE-2019-12527, CVE-2019-12528, CVE-2019-12529, CVE-2019-12854, CVE-2019-13345, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-18860, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-12062, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-15810, CVE-2020-15811, CVE-2020-24606, CVE-2020-25097, CVE-2020-8449, CVE-2020-8450, CVE-2020-8517, CVE-2021-28041, CVE-2021-28116, CVE-2021-28651, CVE-2021-28652, CVE-2021-28662, CVE-2021-31806, CVE-2021-31807, CVE-2021-31808, CVE-2021-33620, CVE-2021-36368, CVE-2021-41617, CVE-2021-46784, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-27316, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:27:37-
81.70.98.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5404/06/2026, 20:19:05 - - ----
114.117.202.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5406/06/2026, 10:28:24 Yes No -CVE-2007-4559, CVE-2015-20107, CVE-2016-3189, CVE-2018-25032, CVE-2019-12900, CVE-2020-10735, CVE-2021-28861, CVE-2022-26488, CVE-2022-37454, CVE-2022-42919, CVE-2022-45061, CVE-2023-24329, CVE-2023-27043, CVE-2023-36632, CVE-2023-40217, CVE-2024-0397, CVE-2024-11168, CVE-2024-3219, CVE-2024-4032, CVE-2024-5642, CVE-2024-6232, CVE-2024-6923, CVE-2024-7592, CVE-2024-8088, CVE-2024-9287, CVE-2025-12084, CVE-2025-12781, CVE-2025-13836, CVE-2025-1383715/03/2026, 21:27:49tencent.com
8.156.91.•••:18789 - 🇸🇬 Singapore Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud15/03/2026, 16:13:5407/06/2026, 01:11:43 - - ----
118.196.100.•••:18789 Clawra (https://cdn.jsdelivr.net/gh/SumeLabs/clawra@main/assets/clawra.png) 🇨🇳 China mainland Yes false Leaked AS137718Beijing Volcano Engine Technology Co., Ltd. / AS4811 China Telecom (Group)Beijing Volcano Engine Technology15/03/2026, 16:13:5415/03/2026, 23:42:02 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:27:56bytedance.com
216.57.106.•••:443 - 🇳🇱 Netherlands Yes false Clean AS210976Timeweb, LLPTaiwan Cloud15/03/2026, 16:13:5417/04/2026, 07:52:22 - - ----
38.162.118.•••:443 - 🇺🇸 United States Yes false Clean AS8796FASTNET DATA INCKurun Cloud15/03/2026, 16:13:5421/03/2026, 20:51:54 No No --09/03/2026, 21:28:02-
47.238.133.•••:18789 - 🇭🇰 Hong Kong Yes false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud HK15/03/2026, 16:13:5305/06/2026, 16:07:01 No Yes APT15, APT28, APT31, APT37, APT39, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow BrokersCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-5138515/03/2026, 21:28:07-
147.182.148.•••:443 - 🇨🇦 Canada Yes false Clean AS14061DigitalOcean, LLCDigitalOcean15/03/2026, 16:13:5305/06/2026, 16:07:02 No Yes APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTECVE-2006-20001, CVE-2016-20012, CVE-2017-15710, CVE-2017-15715, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-15473, CVE-2018-15919, CVE-2018-17189, CVE-2018-17199, CVE-2018-20685, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11993, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-33193, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-3272815/03/2026, 21:28:23-
49.233.15.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5311/04/2026, 10:54:08 Yes Yes APT37, El-Machete-15/03/2026, 21:28:24tencent.com
34.194.172.•••:18789 - 🇺🇸 United States Yes false Clean AS14618Amazon.com, Inc.Amazon15/03/2026, 16:13:5315/03/2026, 23:42:01 No No --09/03/2026, 21:28:25-
5.223.63.•••:443 - 🇸🇬 Singapore Yes false Leaked AS215859Hetzner Online GmbHHetzner Online15/03/2026, 16:13:5317/04/2026, 05:36:57 Yes No -CVE-2021-36368, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:28:28your-server.de, hetzner.com
175.178.131.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5306/06/2026, 15:22:28 Yes Yes APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-4161715/03/2026, 21:28:31tencent.com
43.106.119.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud Singapore15/03/2026, 16:13:5308/04/2026, 13:08:30 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/04/2026, 13:34:13alibabacloud.com
122.51.180.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5315/03/2026, 23:42:01 Yes Yes APT35, Callisto Group, Cobalt Group, MoustachedBouncerCVE-2007-4559, CVE-2015-20107, CVE-2016-3189, CVE-2018-25032, CVE-2019-12900, CVE-2020-10735, CVE-2021-28861, CVE-2022-26488, CVE-2022-37454, CVE-2022-42919, CVE-2022-45061, CVE-2023-24329, CVE-2023-27043, CVE-2023-36632, CVE-2023-40217, CVE-2024-0397, CVE-2024-3219, CVE-2024-39894, CVE-2024-4030, CVE-2024-4032, CVE-2024-5642, CVE-2024-6387, CVE-2024-6923, CVE-2024-7592, CVE-2024-8088, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:28:36tencent.com
149.88.92.•••:18789 - 🇭🇰 Hong Kong Yes false Leaked AS137899I LAYER LIMITEDHong Kong Cloud Network Technology Co Ltd15/03/2026, 16:13:5315/03/2026, 23:42:01 Yes - -CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:28:38cogentco.com
95.217.129.•••:443 - 🇫🇮 Finland Yes false Leaked AS24940Hetzner Online GmbHHetzner Online15/03/2026, 16:13:5306/06/2026, 20:17:04 Yes No -CVE-2023-44487, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-27151, CVE-2025-32728, CVE-2025-46686, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:28:40hetzner.com
14.145.171.•••:6000 - 🇨🇳 China mainland Yes false Leaked AS4134ChinanetCHINANET Guangdong15/03/2026, 16:13:5303/04/2026, 13:28:09 Yes No -CVE-2006-20001, CVE-2014-4078, CVE-2018-16845, CVE-2018-17189, CVE-2018-17199, CVE-2019-0190, CVE-2019-0196, CVE-2019-0197, CVE-2019-0211, CVE-2019-0215, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10097, CVE-2019-10098, CVE-2019-17567, CVE-2019-20372, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2019-9517, CVE-2020-11984, CVE-2020-11993, CVE-2020-13938, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-23017, CVE-2021-26690, CVE-2021-26691, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-3618, CVE-2021-39275, CVE-2021-40438, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-41741, CVE-2022-41742, CVE-2023-25690, CVE-2023-27522, CVE-2023-31122, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-7347, CVE-2025-23048, CVE-2025-23419, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-6620015/03/2026, 21:28:48bj189.cn, 118114.cn, vicp.cc, ctwing.cn, eicp.net, 6655.la, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 51vip.biz, wicp.net, 189free.cn, daqu.com.cn, gicp.net, ctyun.cn, iicp.net
202.98.183.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS4134ChinanetCHINANET Yunnan15/03/2026, 16:13:5315/03/2026, 23:42:01 Yes No --15/03/2026, 21:28:54bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, daqu.com.cn, ctyun.cn
47.92.217.•••:50001 Assistant 🇨🇳 China mainland Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft15/03/2026, 16:13:5315/03/2026, 23:42:01 No Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-5138515/03/2026, 21:28:57-
13.217.178.•••:443 - 🇺🇸 United States Yes false Leaked AS14618Amazon.com, Inc.Amazon Web Services15/03/2026, 16:13:5221/03/2026, 01:37:13 Yes No --15/03/2026, 21:29:03littletrendsetter.com, theshoppad.com, achs.edu, bebeplanet.com, velvetcaviar.com, outdoorsmans.com, mightyjaxx.com, getmesa.com, herbsfortune.com, gatorz.com, joanshepp.com, primewines.com, miatui.com, les4gourmets.com, advancedstanchions.com, project6ny.com, mailegusa.com, unfortunateportrait.com, vitruvi.com, desertfarms.com, pocnyc.com, joahbrown.com, reasonclothing.com, rafaelos.com, easypickins.com
47.117.87.•••:18789 - 🇨🇳 China mainland Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft15/03/2026, 16:13:5216/04/2026, 10:44:45 No No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-3272815/03/2026, 21:29:06-
3.148.171.•••:443 - 🇺🇸 United States Yes false Clean AS16509Amazon.com, Inc.Amazon15/03/2026, 16:13:5215/03/2026, 23:42:00 No No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:29:13-
118.89.184.•••:80 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5206/06/2026, 15:22:29 Yes No --15/03/2026, 21:29:15tencent.com
45.39.210.•••:80 - 🇳🇱 Netherlands Yes false Leaked AS268624Gamers Club LtdaEGI Hosting15/03/2026, 16:13:5218/03/2026, 14:20:03 Yes Yes APT14, APT28, APT40, APT41, Cobalt Group, Earth Berberoka, Energetic Bear, Equation Group, Gamaredon Group, IronHusky, Kimsuky, Lazarus Group, Leafminer, Luckycat APT, Sandworm Team, SharpPanda, TA505, The Shadow Brokers, UNC2452, WIRTECVE-2010-1899, CVE-2010-2730, CVE-2010-3972, CVE-2019-17567, CVE-2020-13950, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-39275, CVE-2021-40438, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-3181315/03/2026, 21:29:21egihosting.com
49.234.188.•••:7070 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5215/03/2026, 23:42:00 Yes No --15/03/2026, 21:29:23tencent.com
114.236.218.•••:18789 - 🇨🇳 China mainland Yes false Clean AS4134ChinanetChinanet Jiangsu Province Network15/03/2026, 16:13:5227/03/2026, 00:29:13 No No --09/03/2026, 21:29:27-
38.181.56.•••:18789 - 🇺🇸 United States Yes false Clean AS140227Hong Kong Communications International Co., Limited / AS8796 FASTNET DATA INCHong Kong Communications International15/03/2026, 16:13:5215/03/2026, 23:42:00 No - -CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:29:34-
45.207.207.•••:18789 - 🇭🇰 Hong Kong Yes false Clean AS8796FASTNET DATA INCVapeline Technology15/03/2026, 16:13:5227/05/2026, 15:32:36 No No -CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:29:38-
174.138.26.•••:443 - 🇸🇬 Singapore Yes false Clean AS14061DigitalOcean, LLCDigitalOcean15/03/2026, 16:13:5216/03/2026, 00:25:03 No Yes APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTECVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-31079, CVE-2024-32760, CVE-2024-34161, CVE-2024-35200, CVE-2024-7347, CVE-2025-26465, CVE-2025-3272815/03/2026, 21:29:42-
54.155.178.•••:443 - 🇮🇪 Ireland Yes false Clean AS16509Amazon.com, Inc.Amazon15/03/2026, 16:13:5215/03/2026, 23:42:00 No - --09/03/2026, 21:29:45-
43.128.98.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5205/06/2026, 20:23:15 Yes Yes APT17, APT36, APT37, APT45, Kimsuky, MuddyWater Group, SideWinder APTCVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38709, CVE-2024-24795, CVE-2024-27316, CVE-2024-36387, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-638715/03/2026, 21:29:47tencent.com
8.131.52.•••:18789 - 🇸🇬 Singapore Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud15/03/2026, 16:13:5215/03/2026, 23:42:00 - - ----
43.106.62.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud Singapore15/03/2026, 16:13:5227/05/2026, 21:53:27 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:29:50alibabacloud.com, hichina.com, alibaba-inc.com
43.156.175.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5117/04/2026, 10:06:24 Yes Yes APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-5138515/03/2026, 21:29:56tencent.com
81.70.166.•••:18789 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5131/03/2026, 00:00:44 No Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-638715/03/2026, 21:30:00-
49.234.59.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud15/03/2026, 16:13:5114/04/2026, 10:35:01 Yes Yes APT37, El-MacheteCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-5138515/03/2026, 21:30:12tencent.com
43.106.53.•••:18789 - 🇸🇬 Singapore Yes false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud Singapore15/03/2026, 16:13:5122/03/2026, 13:51:43 - - ----
240e:345:666a:9100:6a1d:efff:fe34:69ce:18789 - 🇨🇳 China mainland - false Clean AS4134ChinanetChina Telecom IPv6 Broadband Address15/03/2026, 16:13:5115/03/2026, 23:41:59 - - ----
81.71.35.•••:443 - 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing15/03/2026, 16:13:5115/03/2026, 23:41:59 No Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-5138515/03/2026, 21:30:22-
117.72.173.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS141679China Telecom Beijing Tianjin Hebei Big Data Industry Park BranchJD.com15/03/2026, 16:13:5107/06/2026, 01:11:41 Yes No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:30:30jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com
36.138.144.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS9808China Mobile Communications Group Co., Ltd.China Mobile15/03/2026, 16:13:5103/04/2026, 04:30:45 Yes - --15/03/2026, 21:30:33chinamobile.com, chinamobile.cn
213.35.117.•••:18789 - 🇺🇸 United States Yes false Leaked AS31898Oracle CorporationOracle Sweden15/03/2026, 16:13:5115/04/2026, 01:35:08 Yes Yes Salt Typhoon, Sandworm TeamCVE-2024-25111, CVE-2024-33427, CVE-2024-37894, CVE-2025-26618, CVE-2025-30211, CVE-2025-32433, CVE-2025-4671215/03/2026, 21:30:38healtheintent.com, purewellness.com, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oraclecloudservices.com, rsys2.net, hyperroll.com, orcale.com, oraclemobile.com, sun.co.in, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, oracleemaildelivery.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, skire.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, optika.com, jcp.org, smed.com, cernerenviza-tw.com, recruitmax.com, decisioneering.com, stortek.com, seebeyond.com, livelook.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com
43.252.173.•••:18789 - 🇭🇰 Hong Kong Yes false Clean AS59371Dimension Network & Communication LimitedLarge Bright15/03/2026, 16:13:5116/04/2026, 01:22:14 No No --09/03/2026, 21:30:40-
130.61.73.•••:18789 - 🇺🇸 United States Yes false Leaked AS31898Oracle CorporationOracle Cloud15/03/2026, 16:13:5005/04/2026, 08:20:10 Yes - -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:30:46healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuiteforms.com, oracleemaildelivery.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com
101.204.99.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS4837CHINA UNICOM China169 BackboneUNICOM Sichuan15/03/2026, 16:13:5015/03/2026, 22:57:09 Yes No --15/03/2026, 21:30:47optage.co.jp, chinaunicom.cn
152.70.248.•••:8080 - 🇺🇸 United States Yes false Leaked AS31898Oracle CorporationOracle15/03/2026, 16:13:5015/03/2026, 23:41:58 Yes No -CVE-2016-20012, CVE-2019-16905, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51385, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:30:49healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, eu.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com
18.119.128.•••:443 - 🇺🇸 United States Yes false Clean AS16509Amazon.com, Inc.Amazon15/03/2026, 16:13:5018/03/2026, 12:04:52 No No -CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:30:53-
111.228.10.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS141679China Telecom Beijing Tianjin Hebei Big Data Industry Park BranchJingdong Headquarters15/03/2026, 16:13:5011/04/2026, 10:55:23 Yes No -CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198515/03/2026, 21:30:57jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com
54.249.67.•••:443 - 🇯🇵 Japan Yes false Clean AS16509Amazon.com, Inc.Amazon15/03/2026, 16:13:5002/04/2026, 11:11:41 No - --09/03/2026, 21:31:05-
125.133.154.•••:18789 - 🇰🇷 South Korea - false Clean AS4766Korea TelecomKorea Telecom15/03/2026, 16:13:5016/03/2026, 00:26:57 - - ----
47.99.247.•••:80 - 🇨🇳 China mainland Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft15/03/2026, 16:13:5006/06/2026, 04:50:58 No Yes APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-5138515/03/2026, 21:31:14-
43.128.120.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5018/03/2026, 14:19:33 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT36, APT37, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-638715/03/2026, 21:31:17tencent.com
43.156.72.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd15/03/2026, 16:13:5015/04/2026, 13:31:46 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2022-40468, CVE-2023-28531, CVE-2023-38408, CVE-2023-40533, CVE-2023-48795, CVE-2023-49606, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-3272816/03/2026, 00:27:26tencent.com
188.137.176.•••:18789 - 🇳🇱 Netherlands Yes false Clean AS211381Podaon SIAPodaon15/03/2026, 16:13:5016/03/2026, 00:26:57 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198516/03/2026, 00:27:31-
114.67.69.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS138421China Unicom / AS4811 China Telecom (Group)JD.com15/03/2026, 16:11:4605/06/2026, 16:47:21 Yes No -CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198529/05/2026, 06:30:07jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com