🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 683295 Page: 428 / 6833 (100 per page) Showing: 42701-42800 Last Imported: 19/04/2026, 08:41:00
🇨🇳 364,448
🇺🇸 188,265
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 54.168.3.•••:18789 | - | 🇯🇵 Japan | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services Japan | 11/04/2026, 16:31:06 | 17/04/2026, 23:09:26 | No | No | - | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 11/04/2026, 19:35:55 | - |
| 47.239.67.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud HK | 11/04/2026, 16:28:44 | 15/04/2026, 11:15:04 | No | No | - | - | 05/04/2026, 16:31:47 | - |
| 20.97.26.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:44 | 12/04/2026, 23:48:31 | No | No | - | - | 05/04/2026, 16:31:50 | - |
| 143.198.229.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 11/04/2026, 16:28:44 | 15/04/2026, 12:39:17 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2006-20001, CVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-1322, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:52 | - |
| 38.76.205.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS401701 | cognetcloud INC | FOJ IP Technology | 11/04/2026, 16:28:44 | 12/04/2026, 23:48:31 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:53 | cogentco.com |
| 35.228.215.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS396982 | Google LLC | 11/04/2026, 16:28:44 | 18/04/2026, 00:36:04 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:54 | - | |
| 20.168.181.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:44 | 12/04/2026, 23:48:31 | No | No | - | - | 05/04/2026, 16:31:55 | - |
| 4.190.155.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:44 | 12/04/2026, 23:48:31 | No | No | - | - | 05/04/2026, 16:31:56 | - |
| 20.98.89.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:44 | 12/04/2026, 23:48:31 | - | - | - | - | - | - |
| 20.196.210.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:44 | 12/04/2026, 23:48:31 | No | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13938, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51385, CVE-2023-51767, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573 | 11/04/2026, 16:31:59 | - |
| 20.89.41.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:43 | 12/04/2026, 23:48:31 | No | No | - | - | 05/04/2026, 16:32:00 | - |
| 4.151.188.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:43 | 12/04/2026, 23:48:30 | No | - | - | - | 05/04/2026, 16:32:02 | - |
| 20.97.58.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:43 | 12/04/2026, 23:48:30 | - | - | - | - | - | - |
| 20.63.213.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 16:28:43 | 12/04/2026, 23:48:30 | - | - | - | - | - | - |
| 51.81.223.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS16276 | OVH SAS | VPS in US West Oregon 2 | 11/04/2026, 15:57:36 | 12/04/2026, 23:04:45 | Yes | No | - | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 12/04/2026, 07:35:21 | ovh.us |
| 20.214.241.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:36 | 11/04/2026, 21:00:12 | - | - | - | - | - | - |
| 87.14.109.•••:18789 | - | 🇮🇹 Italy | Yes | true | Clean | AS3269 | Telecom Italia S.p.A. | Telecom Italia | 11/04/2026, 15:57:36 | 11/04/2026, 21:00:11 | - | - | - | - | - | - |
| 84.247.152.•••:18789 | - | 🇯🇵 Japan | Yes | true | Clean | AS141995 | Contabo Asia Private Limited | Contabo | 11/04/2026, 15:57:35 | 17/04/2026, 10:02:09 | No | No | - | - | 08/04/2026, 11:50:11 | - |
| 20.225.167.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:35 | 11/04/2026, 21:00:11 | - | - | - | - | - | - |
| 47.81.37.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud | 11/04/2026, 15:57:35 | 12/04/2026, 00:00:09 | - | - | - | - | - | - |
| 47.115.79.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 11/04/2026, 15:57:35 | 18/04/2026, 00:37:59 | - | - | - | - | - | - |
| 219.155.19.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4837 | CHINA UNICOM China169 Backbone | China Unicom | 11/04/2026, 15:57:35 | 11/04/2026, 21:00:10 | - | - | - | - | - | - |
| 20.194.44.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:34 | 11/04/2026, 21:00:10 | - | - | - | - | - | - |
| 20.225.153.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:34 | 11/04/2026, 21:00:10 | - | - | - | - | - | - |
| 207.211.149.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 11/04/2026, 15:57:34 | 17/04/2026, 10:02:02 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 14/04/2026, 11:50:14 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 39.106.27.•••:18789 | - | 🇽🇽 XX | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Unknown | 11/04/2026, 15:57:34 | 17/04/2026, 10:00:57 | Yes | Yes | Packrat | - | 14/04/2026, 21:44:35 | aliyun.com |
| 49.13.39.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner Online | 11/04/2026, 15:57:33 | 11/04/2026, 21:00:09 | - | - | - | - | - | - |
| 50.112.124.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 11/04/2026, 15:57:33 | 17/04/2026, 21:39:40 | - | - | - | - | - | - |
| 175.31.252.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4134 | Chinanet | CHINANET Jilin | 11/04/2026, 15:57:33 | 12/04/2026, 19:21:01 | - | - | - | - | - | - |
| 49.233.206.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 11/04/2026, 15:57:33 | 17/04/2026, 10:01:43 | - | - | - | - | - | - |
| 23.100.122.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:33 | 12/04/2026, 00:44:27 | - | - | - | - | - | - |
| 20.225.83.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:32 | 11/04/2026, 21:00:08 | - | - | - | - | - | - |
| 20.112.83.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:32 | 11/04/2026, 21:00:08 | - | - | - | - | - | - |
| 43.143.114.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 11/04/2026, 15:57:32 | 18/04/2026, 00:38:44 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 15/04/2026, 03:22:53 | tencent.com |
| 185.184.123.•••:18789 | - | 🇳🇱 Netherlands | Yes | true | Clean | AS213877 | U1 DIGITAL SERVICES LTD | U1host AMS | 11/04/2026, 15:57:32 | 17/04/2026, 22:24:37 | No | Yes | APT17, APT36, APT37, APT45, Kimsuky, MuddyWater Group, SideWinder APT | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419 | 17/04/2026, 18:04:12 | - |
| 13.37.210.•••:18789 | - | 🇫🇷 France | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services | 11/04/2026, 15:57:32 | 14/04/2026, 10:29:31 | - | - | - | - | - | - |
| 20.214.104.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:31 | 11/04/2026, 21:00:07 | - | - | - | - | - | - |
| 52.231.68.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:31 | 11/04/2026, 21:00:07 | - | - | - | - | - | - |
| 20.97.1.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:31 | 12/04/2026, 07:00:08 | - | - | - | - | - | - |
| 211.159.146.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 11/04/2026, 15:57:31 | 17/04/2026, 20:54:03 | Yes | No | - | CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 14/04/2026, 20:11:20 | tencent.com, vipkid.com |
| 118.25.55.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 11/04/2026, 15:57:31 | 11/04/2026, 21:00:07 | - | - | - | - | - | - |
| 83.217.220.•••:18789 | - | 🇷🇺 Russia | Yes | true | Clean | AS9123 | JSC "TIMEWEB" | Taiwan Cloud | 11/04/2026, 15:57:30 | 18/04/2026, 00:38:12 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 18/04/2026, 00:41:40 | - |
| 104.21.52.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 11/04/2026, 15:57:30 | 11/04/2026, 21:45:13 | - | - | - | - | - | - |
| 104.168.4.•••:18789 | - | 🇮🇳 India | Yes | true | Clean | AS36352 | HostPapa | [name redacted] | 11/04/2026, 15:57:30 | 11/04/2026, 21:45:13 | - | - | - | - | - | - |
| 147.93.7.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS40021 | Contabo Inc. | Contabo | 11/04/2026, 15:57:29 | 11/04/2026, 21:45:13 | - | - | - | - | - | - |
| 4.151.156.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:29 | 11/04/2026, 21:45:13 | - | - | - | - | - | - |
| 104.168.88.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS36352 | HostPapa | RackNerd | 11/04/2026, 15:57:29 | 14/04/2026, 01:28:35 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 20:15:45 | racknerd.com |
| 46.224.173.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 11/04/2026, 15:57:29 | 12/04/2026, 22:20:55 | - | - | - | - | - | - |
| 45.55.79.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 11/04/2026, 15:57:29 | 11/04/2026, 21:45:12 | - | - | - | - | - | - |
| 144.91.80.•••:18789 | - | 🇩🇪 Germany | Yes | true | Leaked | AS51167 | Contabo GmbH | Contabo | 11/04/2026, 15:57:29 | 17/04/2026, 09:17:07 | Yes | Yes | APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2013-4359, CVE-2015-3306, CVE-2016-20012, CVE-2016-3125, CVE-2017-15710, CVE-2017-15715, CVE-2017-7418, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-17189, CVE-2018-17199, CVE-2018-5740, CVE-2018-5741, CVE-2018-5743, CVE-2018-5744, CVE-2018-5745, CVE-2019-0196, CVE-2019-0197, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-18217, CVE-2019-19269, CVE-2019-19270, CVE-2019-19271, CVE-2019-19272, CVE-2019-6465, CVE-2019-6470, CVE-2019-6471, CVE-2020-11993, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-8616, CVE-2020-8617, CVE-2020-8622, CVE-2020-8623, CVE-2020-8624, CVE-2020-8625, CVE-2020-9272, CVE-2020-9490, CVE-2021-25214, CVE-2021-25215, CVE-2021-25216, CVE-2021-25219, CVE-2021-25220, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-33193, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/04/2026, 17:31:00 | contaboserver.net, contabo.de, contabo.net |
| 91.226.145.•••:18789 | - | 🇩🇰 Denmark | - | true | Clean | AS216275 | Netnoerden ApS | Noerdnet IP4 2 | 11/04/2026, 15:57:28 | 12/04/2026, 14:18:41 | No | No | - | - | 06/04/2026, 09:18:31 | - |
| 43.106.1.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Leaked | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Singapore | 11/04/2026, 15:57:28 | 15/04/2026, 01:30:01 | Yes | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/04/2026, 21:45:38 | alibabacloud.com |
| 20.189.203.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:28 | 11/04/2026, 21:45:11 | - | - | - | - | - | - |
| 159.195.1.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS197540 | netcup GmbH | Netcup | 11/04/2026, 15:57:28 | 17/04/2026, 22:24:46 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 16/04/2026, 16:44:57 | - |
| 129.121.77.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS31898 | Oracle Corporation | OGTIPS1 | 11/04/2026, 15:57:27 | 11/04/2026, 21:45:11 | - | - | - | - | - | - |
| 217.160.173.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | IONOS | 11/04/2026, 15:57:27 | 12/04/2026, 00:00:09 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 11/04/2026, 22:33:57 | takin.it |
| 104.21.55.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS13335 | Cloudflare, Inc. | Cloudflare | 11/04/2026, 15:57:27 | 12/04/2026, 07:00:17 | Yes | No | - | - | 12/04/2026, 06:29:40 | triplewatt.com, fuyuanwj.com, venancio.com, whabt.com, modernpestservices.com, jxxlxj.com, leitzinger.fi, cgmprecast.com, fashionfloors.co, sdkyjt.net, luckyplastic.net, qmscrushing.com, bikeweeksa.com, ics-line.com, vector-pipeline.com, hzfeidi.com, ligneblanche.fr, nethority.com, erbium.fr, fricksfashion.com, sz-jl.com, agrideal.fr, hbbygd88.com, dotfile.us, fuhuake.com, cityfied.net, abpincorp.com, rightwaytrading.net, wenchyuan.com, arizonaacservice.com, ironman.com, anlink.net, jxygcy.com, mangalam.co.in, jekotrade.com, hmcxjc.com, shsinotech.com, vbankph.com, gipnutmeg.com, xjhhcm.com, bopcon.com, ytxweb.net, smcinternational.fr, aurus.fr, chinasyh.net, boyu-group.com, ekakitchen.com, apropos.fr, wisehousetech.com, cloudflare.net, used-kayaks.com, pontoon.fr, qd-baolian.com, databrick.com, csofam.com, lyricsintosong.ai, kidsbud.net, hongkonghome.com, enbridgegasohio.com, enbridgeenergy.com, jxlingtong.com, nardini.com, baselinewoods.com, precision.fr, jiabinnu.com, devil.fr, cleanzoneheating.com, alghanitex.com, triglobalenergy.com, qzz.io, incidence.fr, kfstock.com, padangkencana.com, unmsrmc.org, koworksllc.net, ginachlaw.com, brownsprinting.com, m-printone.com, prins.ai, cloudhq-mkt6.net, valenciamoldremediation.us, forwardwirecloth.net, primeoffice.com.hk, cclvcr.com, seirich.fr, timing-tech.com, klmymmyc.com, efi.fr, holidayzone.com.au, njbiomaterials.org, silkyway.dk, archi.ai, neosec.ai, hnbeixiang.com, avc.fr, stoneart.co.in, leisonhk.com, refee.net, xjzljt.net, theworkssydney.com, xjjingyoga.com, dongfanggufen.net, sxgas.net, wakechem.com, biketeam.fi, 1haojiyin.com, garage-auto-martinez.fr, lamaison-corse.fr, sinotransfj.com, theholbengroup.com, dzrjx.net, frenchscupcakebakery.com, borlandnusantara.com, wtw.co.in, aptenonsjz.com, lifemark.ca, globalinternation.com, maryelexports.com, spectraenergy.com, xen.do, enbridgeus.com, impactanalytics.ai, detongwiremesh.com, hisgames.org, sanhoos.com, irvinesgroup.com, dgclh.com, bamko.net, ausarabbusinesscouncil.com, creditop.com, hansecontrol.com, lstcarbon.com, it.com, briefy.ai, ttstest.com, outbook.com, health-care-systems.com, gaetanasnyc.com, oukay.net, irrigationsystems4u.com, mrgroup.in, yhjgkeji.com, experts-ffg.fr, sym.fr, china-one.net, kingdisplay.net, innovation.digital, eu.org, scheduleme.org, unified.in, amilcar.fr, bierte.com, garage-eiffel.fr, jadzdjm.com, pesasybalanzas.com, prem-box.com, com.de, ttyt360.com, cmune.com, xtcjlre.com, wei-pipeline.com, williamssprinklerlandscape.com, sfpl.in, mohta.in, enbridgepartners.com, zgkaite.com, turnoutservices.com, welovedoodles.com, xcom-mc.fr, bobcatstorage.com, zjdddl.com, luciamarquand.com, ranscustombuilders.com, huadewood.com, leverijllc.com, visionaryrcm.com, hotel-beausejour-nevers.fr, casablanca.fr, intbot.ai, innoveax.com, oracle-ag.ch, eyes-armour.com, zjhrbz.com, zhaowoo.net, adl.co.in, geneseofiredept.com, jiangsufuji.com, spectraenergypartners.com, chedermenachem.org, centerity.com, computerzone.com, instepdancect.com, einpl.com, bestwanhui.com, outdoorkitchensnorthwest.com, txmq.com, frogs.fr, ermissolutions.com, mnpp.com, domainedelagarenne-morestel.fr, enbridgemanagement.com, fermeurop.fr, bain86.com, fxgowin.com, questar.com, stieberveloric.com, aiglon.fr, enbridgegaz.com, milou.in, workers.dev, midcoastpartners.com, reva.fr, newoceanfood.com, cmimoulding.com, dechuangjixie.com, growmyway.org, technos.fr, tigerexpressfuel.com, audito.fr, 360-xj.com, xjwfcj.com, piqueassiette.fr, meeshamoultonlaw.com, clipart-library.com, isolation-maisons-provencales.fr, disa.fr, impresosmonterrey.com, shworldbest.com, exponentiel.fr, zsnet.net, kic-indonesia.com, dongguansenzi.com, meridianoutboard.com, carmaxbolivia.com, denis-carrelage.fr, sdfengze.net, enbridgeservices.com, physnum.com, empreintes-coiffure.fr, china114.net, mariano.fr, smartbuildings.com, olivet-business-center.fr, uniongas.com, dts-renovation.fr, hy189.net, tidal-energy.com, acutecomm.com.tw, xjhongshun.com, vectorpipeline.com, geochem.org, food-machines.net, equinaceaprodutosnaturais.com, dmln.net |
| 209.38.248.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 11/04/2026, 15:57:27 | 11/04/2026, 21:45:11 | - | - | - | - | - | - |
| 154.81.38.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS140869 | Turing Group Limited | Turing Group Limited | 11/04/2026, 15:57:27 | 14/04/2026, 23:59:48 | - | - | - | - | - | - |
| 78.47.208.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 11/04/2026, 15:57:27 | 17/04/2026, 20:08:40 | No | No | - | - | 08/04/2026, 06:46:33 | - |
| 75.119.155.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS51167 | Contabo GmbH | Accelerated Broadband | 11/04/2026, 15:57:27 | 16/04/2026, 08:42:45 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2018-10851, CVE-2018-14626, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-10162, CVE-2019-10163, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 13/04/2026, 05:33:08 | - |
| 40.115.137.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:25 | 11/04/2026, 21:45:10 | - | - | - | - | - | - |
| 104.211.72.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:25 | 17/04/2026, 22:24:41 | - | - | - | - | - | - |
| 20.246.7.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:57:25 | 11/04/2026, 21:45:10 | - | - | - | - | - | - |
| 20.210.160.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:03 | 12/04/2026, 23:03:49 | No | No | - | - | 05/04/2026, 16:31:11 | - |
| 20.214.241.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:03 | 12/04/2026, 23:03:49 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:14 | - |
| 20.225.167.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:03 | 12/04/2026, 23:03:49 | - | - | - | - | - | - |
| 20.194.44.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:03 | 12/04/2026, 23:03:49 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 11/04/2026, 16:31:18 | - |
| 50.112.124.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 11/04/2026, 15:55:03 | 18/04/2026, 00:36:00 | No | - | - | CVE-2015-8866, CVE-2015-8994, CVE-2015-9253, CVE-2016-10158, CVE-2016-10159, CVE-2016-10160, CVE-2016-10161, CVE-2016-10162, CVE-2016-10397, CVE-2016-1283, CVE-2016-7412, CVE-2016-7413, CVE-2016-7414, CVE-2016-7416, CVE-2016-7417, CVE-2016-7418, CVE-2016-7478, CVE-2016-7479, CVE-2016-7480, CVE-2016-7568, CVE-2016-9137, CVE-2016-9138, CVE-2016-9934, CVE-2016-9935, CVE-2016-9936, CVE-2017-11142, CVE-2017-11144, CVE-2017-11145, CVE-2017-11147, CVE-2017-11362, CVE-2017-11628, CVE-2017-12932, CVE-2017-12933, CVE-2017-12934, CVE-2017-16642, CVE-2017-5340, CVE-2017-7189, CVE-2017-7272, CVE-2017-7890, CVE-2017-7963, CVE-2017-8923, CVE-2017-9120, CVE-2017-9224, CVE-2017-9225, CVE-2017-9226, CVE-2017-9227, CVE-2017-9228, CVE-2017-9229, CVE-2018-10545, CVE-2018-10546, CVE-2018-10547, CVE-2018-10548, CVE-2018-10549, CVE-2018-14851, CVE-2018-14883, CVE-2018-14884, CVE-2018-15132, CVE-2018-17082, CVE-2018-19395, CVE-2018-19396, CVE-2018-19518, CVE-2018-19935, CVE-2018-20783, CVE-2018-5711, CVE-2018-5712, CVE-2018-7584, CVE-2019-6977, CVE-2019-9020, CVE-2019-9021, CVE-2019-9022, CVE-2019-9023, CVE-2019-9024, CVE-2019-9637, CVE-2019-9638, CVE-2019-9639, CVE-2019-9641, CVE-2019-9675, CVE-2022-31628, CVE-2022-31629, CVE-2022-4900 | 11/04/2026, 16:31:19 | - |
| 23.100.122.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:03 | 12/04/2026, 23:03:48 | - | - | - | - | - | - |
| 20.225.83.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | No | - | - | 05/04/2026, 16:31:23 | - |
| 20.112.83.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | - | - | - | - | - | - |
| 20.214.104.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | No | - | - | 05/04/2026, 16:31:26 | - |
| 52.231.68.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:27 | - |
| 83.217.220.•••:18789 | - | 🇷🇺 Russia | Yes | true | Clean | AS9123 | JSC "TIMEWEB" | Taiwan Cloud | 11/04/2026, 15:55:02 | 18/04/2026, 00:35:35 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:30 | - |
| 172.67.198.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS13335 | Cloudflare, Inc. | Cloudflare | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | Yes | No | - | - | 11/04/2026, 16:31:31 | fuyuanwj.com, assessoriagarvi.com, jxxlxj.com, raiolanetworks.com, tamtampercusion.com, beadworld.cz, cgmprecast.com, tenxtenx.com, arturosanchez.com, airconservice.us, sdkyjt.net, luckyplastic.net, qmscrushing.com, bikeweeksa.com, tecnicasuloa.com, ics-line.com, thecampamento.com, wecamp.net, hzfeidi.com, aiden-vn.com, oxigendc.com, filtraglass.com, anhbac.com, kiddieworldchildcarecenter.com, soloepis.com, californiaminisplits.com, fricksfashion.com, redondobeachairconditioning.us, precisionassembly.com, fabresa.com, sz-jl.com, quatangthanhdong.com, printa-cal.com, hbbygd88.com, fuhuake.com, cityfied.net, poloralphlaurenfactorystore.com, abpincorp.com, hvacdistributors.com, rightwaytrading.net, wenchyuan.com, eurospainconsulting.com, anlink.net, laravital.com, jxygcy.com, desertaidsproject.org, jekotrade.com, hmcxjc.com, shsinotech.com, vbankph.com, elrafel.com, gipnutmeg.com, xjhhcm.com, bopcon.com, vulcanizadosruiz.com, ytxweb.net, bacalaorafols.com, poloralphlauren.com, igualiaformacion.com, crossolutions.com, apartamentosturisticostudela.com, audiencegain.net, tipperaryraces.ie, chinasyh.net, boyu-group.com, ekakitchen.com, heritage.org, taxi321.com, difrenos.com, wisehousetech.com, lithiumconcrete.com, cloudflare.net, eustaquiocanto.com, qd-baolian.com, aiassist.au, csofam.com, hanofoods.com, borregohealth.org, elsoldeantequera.com, kidsbud.net, horizm.com, loitoan.com, wpt.org, paramountairconditioning.com, jxlingtong.com, elreflejo.com, newclear.co, calsolfer.com, baselinewoods.com, jiabinnu.com, 156828.com, airconditioningdistributor.us, alghanitex.com, qzz.io, pirineos.com, alpha-one.org, kfstock.com, ibeslab.com, brownsprinting.com, grupodelasheras.com, pacolopez.com, phutho.work, xxglasses.net, m-printone.com, fanoia.com, cloudhq-mkt6.net, t-zoneland.com, forwardwirecloth.net, estanteriasjerez.com, songhycas.com, cclvcr.com, timing-tech.com, globalassetsolutions.com, klmymmyc.com, editorialnazari.com, residenciadeancianosensevilla.com, muabanten.com, evenlan.com, plumbingandheating.org, ralphlaurenhome.com, escudodigital.com, mayhoangtung.com, hnbeixiang.com, everymantherapy.com, gialoilongan.com, leisonhk.com, refee.net, xjzljt.net, belzuz.com, jeycorp.com, xjjingyoga.com, dongfanggufen.net, sxgas.net, goin-vn.com, wakechem.com, delco-construction.com, vsun-solar.com, indonga.net, cyberlotus.com, rlm.com, 1haojiyin.com, sinotransfj.com, mudanzaspt.com, vrgkhaihoan.com, dzrjx.net, dgmiberoamerica.com, talleresvillegas.com, aptenonsjz.com, globalinternation.com, maryelexports.com, ralphlauren.fr, inmokeys.com, faempal.com, tallerescodi.com, detongwiremesh.com, sanhoos.com, gruposolvanto.com, dgclh.com, bamko.net, ausarabbusinesscouncil.com, hansecontrol.com, lstcarbon.com, cristaleriatori.com, hvacspareparts.com, voyagevietnammoto.com, ttstest.com, termoplasticosbenicarlo.com, vimedtec.com, viettelsoftware.com, hanacans.com, gaetanasnyc.com, lombardoslu.com, oukay.net, irrigationsystems4u.com, cuacuonanbinh.com, smilelineclinic.com, ichiisoft.com, oremat.com, grupotegnair.com, yhjgkeji.com, aerovertol.com, haciendagrimon.com, china-one.net, kingdisplay.net, alquilermaquinas.com, chuyenphatnhanhgiare.net, advintage.net, eu.org, ralphlauren.co.kr, bierte.com, jadzdjm.com, pesasybalanzas.com, polo.com, com.de, ttyt360.com, innerarrowcounseling.com, cristinaquerol.com, chaps.com, nunezhandles.com, mayerbrownjsm.com, suministrosalso.com, joylibros.com, vidrologic.com, basis.org, zgkaite.com, turnoutservices.com, manxdining.im, embutidosbierzo.com, zjdddl.com, curvedglassxxl.com, ranscustombuilders.com, huadewood.com, redmood-agency.com, cvifasm.com, orangeairconditioning.us, ralphlauren.com, ludiana.com, oracle-ag.ch, iberoforwarders.com, rconecta.com, eyes-armour.com, zjhrbz.com, zhaowoo.net, jiangsufuji.com, bestirecorp.com, abraham-hicks.cz, cazcarra.com, transpacificvn.com, actuacee.com, bestwanhui.com, natasaspa.com, instintomoda.com, gruposdm.com, retrospectcounseling.com, classicalbedrooms.co.uk, btrueb.com, bain86.com, polobarralphlauren.com, fxgowin.com, studentfone.cz, flatbyartis.com, borregomedical.org, curtidosjacobogomez.com, corachanmaxilofacial.com, sankoreafrica.com, enanzo.com, workers.dev, restaurace-karolina.cz, finer.com.br, newoceanfood.com, nttdata-vds.com, absolutamudancas.com.br, dechuangjixie.com, talleractivo.com, heritageaction.com, mundoit.com.ar, tigerexpressfuel.com, investicedokryptomen.cz, anmacvietnam.com, megatecnologia.com, apeloa-kangyu.com, maymacanphu.com, demetrioyjavirentacar.com, 360-xj.com, smartremsolutions.com, jucyvietnam.com, aicomplutense.com, disdal.com, xjwfcj.com, castillianfoods.com, sucresa.com.ar, ralphlauren.com.hk, impresosmonterrey.com, shworldbest.com, zsnet.net, aspirewy.com, topigx.com, dongguansenzi.com, gaolongan.com, kentacapital.com, galiciasea.com, carmaxbolivia.com, sdfengze.net, china114.net, bynavas.com, vinagreenplus.com, ktncsb.com, hy189.net, ecasal.com, filatsserena.com, xjhongshun.com, daphealth.org, isofh.com, alquilerordenadores.com, robertogarrudo.com, jilyphukhai.com, geochem.org, food-machines.net, naturalstonefromspain.com, greenviet.net, trespasosconsultores.com, equinaceaprodutosnaturais.com, chothuemaylamda.com, dmln.net |
| 147.93.7.•••:18789 | - | 🇩🇪 Germany | - | true | Leaked | AS40021 | Contabo Inc. | Contabo | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:32 | contaboserver.net, contabo.de, contabo.net |
| 4.151.156.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | - | - | - | - | - | - |
| 45.55.79.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | No | - | - | 05/04/2026, 16:31:34 | - |
| 202.95.17.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS152194 | CTG Server Limited | Rackip Consultancy | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | No | - | - | 05/04/2026, 16:31:35 | - |
| 134.209.202.•••:18789 | - | 🇳🇱 Netherlands | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-20372, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:37 | - |
| 20.189.203.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | No | - | - | 05/04/2026, 16:31:38 | - |
| 159.195.1.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS197540 | netcup GmbH | Netcup | 11/04/2026, 15:55:02 | 18/04/2026, 00:35:59 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:39 | - |
| 217.160.173.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | IONOS | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 11/04/2026, 16:31:40 | takin.it |
| 209.38.248.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:48 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT36, APT37, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728 | 11/04/2026, 16:31:41 | - |
| 45.33.74.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS63949 | Akamai Connected Cloud | Linode | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:47 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 11/04/2026, 16:31:44 | - |
| 40.115.137.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:47 | - | - | - | - | - | - |
| 20.246.7.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:55:02 | 12/04/2026, 23:03:47 | - | - | - | - | - | - |
| 115.190.64.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS137718 | Beijing Volcano Engine Technology Co., Ltd. | Beijing Volcano Engine Technology | 11/04/2026, 15:24:08 | 18/04/2026, 00:38:44 | Yes | No | - | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/04/2026, 11:49:22 | gwbn.net.cn |
| 111.193.230.•••:18789 | Claw (🐾) | 🇨🇳 China mainland | Yes | true | Clean | AS4808 | China Unicom Beijing Province Network | China Unicom Beijing | 11/04/2026, 15:24:08 | 11/04/2026, 20:15:14 | - | - | - | - | - | - |
| 185.157.214.•••:18789 | - | 🇳🇱 Netherlands | Yes | true | Clean | AS216071 | SERVERS TECH FZCO | Amsterdam | 11/04/2026, 15:24:08 | 18/04/2026, 00:38:51 | No | Yes | APT15, APT17, APT28, APT31, APT36, APT37, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 17/04/2026, 20:58:27 | - |
| 148.251.0.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner Online GmbH | 11/04/2026, 15:24:07 | 11/04/2026, 20:15:13 | - | - | - | - | - | - |
| 118.190.161.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 11/04/2026, 15:24:07 | 12/04/2026, 07:00:31 | Yes | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon, WildCard APT | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12418, CVE-2019-17563, CVE-2019-2684, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11996, CVE-2020-13934, CVE-2020-13935, CVE-2020-13943, CVE-2020-14145, CVE-2020-15778, CVE-2020-17527, CVE-2020-1935, CVE-2020-1938, CVE-2020-8022, CVE-2020-9484, CVE-2021-24122, CVE-2021-25122, CVE-2021-25329, CVE-2021-30640, CVE-2021-33037, CVE-2021-36368, CVE-2021-41079, CVE-2021-41617, CVE-2021-43980, CVE-2022-25762, CVE-2022-29885, CVE-2022-42252, CVE-2023-28708, CVE-2023-38408, CVE-2023-41080, CVE-2023-42795, CVE-2023-44487, CVE-2023-45648, CVE-2023-46589, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-21733, CVE-2024-23672, CVE-2024-24549, CVE-2025-24813, CVE-2025-55752, CVE-2025-55754, CVE-2025-61795 | 12/04/2026, 03:40:56 | aliyun.com, laidianbanlv.cn |
| 104.210.210.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 11/04/2026, 15:24:07 | 11/04/2026, 21:00:19 | - | - | - | - | - | - |
| 38.95.74.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Leaked | AS979 | NetLab Global | Cogent Communications | 11/04/2026, 15:24:07 | 18/04/2026, 00:38:16 | Yes | Yes | APT15, APT17, APT28, APT31, APT36, APT37, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/04/2026, 16:48:41 | cogentco.com |
| 58.37.137.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4812 | China Telecom (Group) | ChinaNet Shanghai | 11/04/2026, 15:24:06 | 17/04/2026, 22:24:43 | - | - | - | - | - | - |
| 98.95.97.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 11/04/2026, 15:24:06 | 11/04/2026, 21:00:18 | - | - | - | - | - | - |
| 217.182.66.•••:18789 | - | 🇫🇷 France | Yes | true | Leaked | AS16276 | OVH SAS | OVH | 11/04/2026, 15:24:06 | 12/04/2026, 22:21:01 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 12/04/2026, 07:34:40 | ovh.net |
| 104.21.24.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 11/04/2026, 15:24:06 | 12/04/2026, 00:44:54 | - | - | - | - | - | - |
| 51.107.187.•••:18789 | - | 🇪🇺 European Union | - | true | Clean | AS8075 | Microsoft Corporation | Cloud | 11/04/2026, 15:24:06 | 11/04/2026, 21:00:18 | - | - | - | - | - | - |