🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 926582 Page: 565 / 9266 (100 per page) Showing: 56401-56500 Last Imported: 07/06/2026, 03:36:56
🇨🇳 458,280
🇺🇸 265,401
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 43.167.17.•••:18789 | - | 🇸🇬 Singapore | - | false | Clean | AS132203 | Tencent Building, Kejizhongyi Avenue | Aceville Pte Ltd | 22/05/2026, 22:55:58 | 24/05/2026, 11:19:36 | - | - | - | - | - | - |
| 47.103.45.•••:18789 | - | 🇨🇳 China mainland | - | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:55:58 | 24/05/2026, 11:19:36 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 22/05/2026, 22:58:08 | - |
| 172.67.158.•••:18789 | - | 🇺🇸 United States | - | false | Leaked | AS13335 | Cloudflare, Inc. | Cloudflare | 22/05/2026, 22:55:58 | 07/06/2026, 01:06:07 | Yes | No | - | - | 22/05/2026, 22:58:09 | tandfonline.com, familydentistryorlando.com, 1-x-stavka1.ru, fuyuanwj.com, future-science-group.com, pdnseek.com, xrhy-group.com, sh-hibo.com, troydental.net, jxxlxj.com, jaguar.in, northpacificendodontics.com, tenxtenx.com, middlehopefamilydental.com, dignityhealthstg.org, cwsse.com.cn, tshlkj.net, diatoz.com, sdkyjt.net, luckyplastic.net, bikeweeksa.com, biotechniques.com, ics-line.com, teamway.org, ovikhealth.com, aiden-vn.com, melange.ai, hopestreetfamilycenter.org, anhbac.com, stlukeswoodlands.com, lubbockdds.com, californiaminisplits.com, redondobeachairconditioning.us, beccaswim.com, sz-jl.com, jlr.com, plantationroaddental.com, extraordinarysmile.com, quatangthanhdong.com, radiotavisupleba.ge, dentalcarebellingham.com, hbbygd88.com, chistlukeshealth.org, kamfin.com, texandental.com, incegd.com, selectium.ug, everettdentalcenter.com, hvacdistributors.com, rightwaytrading.net, xintec.hk, wenchyuan.com, thedentaldesignstudios.com, aestheticimplantdentistry.com, meter.ln.cn, txoss.com, anlink.net, supportsierranevada.org, jxygcy.com, xl-flex.com, shczhsyy.com, avancen.com, highlandindustries.com, gipnutmeg.com, xjhhcm.com, bopcon.com, resoto.com, jiuliproduce.com, fitnesstech.org, ytxweb.net, alsuyar.net, naseni.gov.ng, woodlandhealthcare.com, greenwich2000.com, clubduma.ru, kidsfirstmc.com, audiencegain.net, chinasyh.net, genetracerbiotech.com, minhkhanhcomputer.com, carleaseusa.com, taxi321.com, capitolperiodontal.com, refly.ai, jyskaiyue.com, wisehousetech.com, smashingideas.com, periosolutions.net, washingtonendodontics.com, dentistryofleesburg.com, cloudflare.net, etempmail.com, milliken.com, quality-fab.com, gatorchucks.cn, hanofoods.com, stlukeslakeside.com, morevision.ai, lyricsintosong.ai, kidsbud.net, loitoan.com, identitymso.com, innfos.cn, thietbixaydunglamtung.com, chicpartydress.com, paramountairconditioning.com, bayvillagepeds.com, fastchecker.us, dignityhealth.org, preetenterprises.in, transformationdentistry.com, wekivadental.com, vidooly.com, williamsfurnacerepair.com, aviso.ai, lisaduke.com, serenitydentistryspa.com, baselinewoods.com, schrederdental.com, drsoniakohli.com, bestrun.net, railga.com, kakosdental.com, horizonpwr.com, kc92.com, raca.edu.jo, alghanitex.com, qzz.io, managedcaresystems.com, dehuiguangchang.cn, xjgudao.com, gatsbylabs.com, chistfrancishealth.org, jaguar.ca, brownsprinting.com, markaporterdds.com, phutho.work, smjclean.com, m-printone.com, prins.ai, cloudhq-mkt6.net, stpeteosi.com, t-zoneland.com, baisecurity.net, beyondimpact.org, songhycas.com, dentistryatwalkersquare.com, dolphindentalcare.com, timing-tech.com, agro-vigs.com, 8poroito.com.br, lowelloralsurgery.com, chinasand.net, mathiasandmagaro.com, muabanten.com, eurotissus.com, plumbingandheating.org, firstresponders.co.in, venn.tv, mayhoangtung.com, pp.ua, reeldealer.ai, neosec.ai, stlukeshealth.org, metalindustries.net.in, mingstone.net, qdyzsc.com, gialoilongan.com, springfieldperio.com, leisonhk.com, jasonforddds.com, xjjingyoga.com, gpchain.com, dongfanggufen.net, cidyemma.com, sxgas.net, goin-vn.com, wakechem.com, taylorfrancis.com, delco-construction.com, wxshunan.com, vsun-solar.com, indonga.net, onssp.com, cyberlotus.com, jaguar-qatar.com, sinotransfj.com, vrgkhaihoan.com, dzrjx.net, valleycareipa.com, aptenonsjz.com, erc-distribution.kz, code-china.com, customelec.com, impactanalytics.ai, leixinfoods.net, zerellaendo.com, supportmercymerced.org, goldplateck.com, chengchewang.com, dentalassist.ai, alnoortower.com, studiom-kb.com, dldianfeng.cn, simatek.com, cmore-automotive.com, jaguartroy.com, bamko.net, hansecontrol.com, pilindia.in, it.com, voyagevietnammoto.com, briefy.ai, ttstest.com, carmivietnam.com, lamaxwell.com, spectraltms.com, zebra-chem.com, vimedtec.com, viettelsoftware.com, hanacans.com, gaetanasnyc.com, w-dentistry.com, oukay.net, ekenken.com, cuacuonanbinh.com, demetergroup.net, sendabasket.com.au, h2-eco.com, bjgxcl.com, ichiisoft.com, jaguar.tw, beiyuecheng.com, jaguar.com.cn, poselab.com, landrover.com.cn, drjamesclewis.com, chuyenphatnhanhgiare.net, eu.org, jadzdjm.com, polartec.com, eastondentists.com, artifexinteriorsystems.com, polikom.ru, avco.at, ugenome.io, danphiltondds.com, com.de, genoatelepsychiatry.com, drsrubinsteinandducoff.com, accusource-online.com, mandentalchinohills.com, rayinmind.com, landwise.org, jaguar.it, jz5288.com, guardianeldercare.com, lingduansy.com, desaidentalspa.com, landrover.fr, st-joseph.org, jinld.net, mybizconcierge.au, artfuldental.com, szlis.com.cn, buffalomanufacturingworks.com, chistlukeshealthmemorial.org, huadewood.com, landrover.ca, gnodentalcare.com, periodoctors.com, jaguar.com, accurateengg.co.in, parliament-osetia.ru, xjnmi.com, jnzygc.com, sequoiahospitalfoundation.org, intbot.ai, landrover.it, oracle-ag.ch, eyes-armour.com, stlukesvintage.com, rmperiohealth.com, jiangsufuji.com, edge-us.org, warwickanalytics.com, computerzone.com, eb5aig.net, alipazfamilydentistry.com, transpacificvn.com, einpl.com, gdsaiqi.com, bestwanhui.com, natasaspa.com, bluewaterdentistry.net, supportcaliforniahospital.org, hkbolton.com, f1000.com, bakersfieldmemorial.org, taylorandfrancis.com, ocbaydental.com, highplainsperio.com, wataugafamilydentistry.pro, fxgowin.com, myfamilydentalohio.com, strongvalve.com, zhujigema.net, f1000research.com, luckywaymall.com, nt-bs.com, taocimall.com, qh-hd.com, milliken-cable-management.jp, naniwavn.com, workers.dev, instantpaydaynv.com, nycendodontics.com, hashemfoods.com, newoceanfood.com, bjzthb.com, bhawanibharatgas.in, nttdata-vds.com, dechuangjixie.com, cnkejie.com, reteck.net, bayfrontdental.com, 8189330.cn, routledge.com, encapsys.com, anmacvietnam.com, parkridgedds.com, westex.com, offshoreoralsurgery.com, maymacanphu.com, dignityhealthmember.org, jucyvietnam.com, sibur-traektoria.ru, eaststeel.net, oishiisushi.dk, pet-bottle.net, lasherautogroup.com, allaboutnails.org, myqo.com, mediabritesmile.com, perfectsmilesdentistreston.com, inmotionventures.com, lethindds.com, trinityhealth.com, energy2engage.com, liyubelt.net.cn, topigx.com, gaolongan.com, courtyards-al.com, toffu.ai, borchers.com, sdfengze.net, jaguarusa.com, harmanenterprises.in, oralsurgeryofwestchester.com, china114.net, propetchina.com, homewoodoralsurgery.com, chgef.com, landroverusa.com, watkinslitho.com, vinagreenplus.com, houstmust.com, futurefg.ru, dllitong.com, springfieldprinting.com, wisconsincentral.net, hansonfamilydental.com, isofh.com, valleytech.org, converse.dk, mercybakersfield.org, yaldoeyecenter.com, oralfacial.com, lyric-line.ru, greenleaf-publishing.com, jlrext.com, paulblidydentist.com, jilyphukhai.com, geochem.org, food-machines.net, sealbeachdds.com, greenviet.net, boatlifeevents.com, chothuemaylamda.com, jaguar-kenya.com |
| 142.93.215.•••:18789 | - | 🇮🇳 India | - | false | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 22:55:58 | 24/05/2026, 11:19:36 | No | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2016-20012, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 22/05/2026, 22:58:12 | - |
| 75.119.155.•••:18789 | - | 🇩🇪 Germany | Yes | false | Clean | AS51167 | Contabo GmbH | Accelerated Broadband | 22/05/2026, 22:55:58 | 24/05/2026, 11:19:36 | Yes | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2018-10851, CVE-2018-14626, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-10162, CVE-2019-10163, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 22/05/2026, 22:58:13 | dimodesign.co.kr |
| 51.16.245.•••:10034 | - | 🇮🇱 Israel | Yes | true | Leaked | AS16509 | Amazon.com, Inc. | A100 Row Inc | 22/05/2026, 22:23:37 | 07/06/2026, 00:34:01 | Yes | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 22/05/2026, 22:26:48 | aws.com |
| 47.92.69.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:51 | 04/06/2026, 13:40:19 | No | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51385, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728 | 23/05/2026, 06:08:10 | - |
| 100.50.181.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS14618 | Amazon.com, Inc. | Amazon Web Services | 22/05/2026, 22:19:49 | 05/06/2026, 06:54:05 | Yes | No | - | - | 23/05/2026, 06:13:17 | bookworm.com, lovefilm.com, amazon.eu, amazaon.com, z-exp.com, shopbop.com, accept.com, amazonn.com, boxofficemojo.com, amazonaws-us-gov.com, amaozn.com, awsamazon.com, amazonmusiclocal.com, a9.com, amzzon.com, mturk.com, com.be, amazonpay.com, rooftopmedia.net, vine.com, amazon.com.au, amazon-rings.com, amazonin.com, amzn.asia, apn-portal.com, evi.com, amazonprime.com, audiblecareers.com, beautybar.com, junglee.com, tenmarks.com, amazonwebservices.net, associates-amazon.com, amazonrobotics.com, endless.com, amazonlocal.com, amazonllc.com, media-imdb.com, amazon.com.tw, amazonaws.com, kivasystems.com, amzn.com, amazon.com, thinkboxsoftware.com |
| 185.237.97.•••:18789 | - | 🇩🇪 Germany | Yes | false | Clean | AS204548 | Kamatera Inc | Cloud Web Manage EU FR | 22/05/2026, 22:19:49 | 26/05/2026, 12:05:01 | No | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Berberoka, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2013-1896, CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-3523, CVE-2014-3581, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-10708, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-7679, CVE-2017-8923, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-13938, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2021-21702, CVE-2021-21703, CVE-2021-21704, CVE-2021-21705, CVE-2021-21706, CVE-2021-21707, CVE-2021-26690, CVE-2021-26691, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31628, CVE-2022-31629, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-37454, CVE-2023-25690, CVE-2023-28625, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795 | 23/05/2026, 06:13:21 | - |
| 98.126.102.•••:10155 | - | 🇺🇸 United States | Yes | true | Clean | AS4213 | Krypt Technologies | Krypt Technologies | 22/05/2026, 22:19:49 | 06/06/2026, 20:17:04 | Yes | Yes | APT14, APT15, APT28, APT31, APT37, APT39, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow Brokers, WIRTE | CVE-2000-1210, CVE-2001-0590, CVE-2002-0493, CVE-2005-4838, CVE-2006-20001, CVE-2006-7196, CVE-2007-1358, CVE-2007-2449, CVE-2008-0128, CVE-2009-2696, CVE-2013-2185, CVE-2013-4286, CVE-2013-4322, CVE-2013-4352, CVE-2013-4444, CVE-2013-4590, CVE-2013-5704, CVE-2013-6357, CVE-2013-6438, CVE-2014-0075, CVE-2014-0096, CVE-2014-0098, CVE-2014-0099, CVE-2014-0117, CVE-2014-0118, CVE-2014-0119, CVE-2014-0226, CVE-2014-0231, CVE-2014-3523, CVE-2014-3581, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8735, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-13938, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-8022, CVE-2021-23017, CVE-2021-26690, CVE-2021-26691, CVE-2021-34798, CVE-2021-3618, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-41741, CVE-2022-41742, CVE-2023-25690, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:13:23 | vpls.net, vpls.com |
| 175.24.55.•••:10004 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 22:19:49 | 06/06/2026, 18:53:01 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:13:24 | tencent.com |
| 159.75.249.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 22:19:49 | 06/06/2026, 23:06:09 | No | Yes | APT37, El-Machete | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617 | 23/05/2026, 06:13:26 | - |
| 143.198.159.•••:443 | - | 🇺🇸 United States | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 22:19:49 | 05/06/2026, 20:23:15 | No | Yes | APT1 Comment Crew, APT15, APT27, APT28, APT29, APT31, APT34, APT35, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Earth Longzhi, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Turla APT Group, Volt Typhoon | CVE-2012-6708, CVE-2015-9251, CVE-2016-20012, CVE-2019-11358, CVE-2020-11022, CVE-2020-11023, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-7656, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-1322, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:13:27 | - |
| 138.2.109.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 22/05/2026, 22:19:49 | 07/06/2026, 01:11:19 | Yes | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT36, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Turla APT Group, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-6387, CVE-2024-7347, CVE-2025-23048, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:13:28 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 194.163.171.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS51167 | Contabo GmbH | Contabo | 22/05/2026, 22:19:49 | 04/06/2026, 15:05:41 | No | No | - | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 23/05/2026, 06:13:30 | - |
| 121.41.91.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:49 | 04/06/2026, 14:22:49 | Yes | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 06:13:31 | aliyun.com |
| 178.162.252.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS28753 | Leaseweb Deutschland GmbH | Leaseweb | 22/05/2026, 22:19:49 | 06/06/2026, 12:34:06 | - | - | - | - | - | - |
| 54.37.84.•••:18789 | - | 🇫🇷 France | Yes | false | Clean | AS16276 | OVH SAS | OVH | 22/05/2026, 22:19:49 | 23/05/2026, 06:45:26 | No | No | - | CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:13:33 | - |
| 154.203.125.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 22:19:48 | 06/06/2026, 14:40:17 | No | - | - | - | 17/05/2026, 06:13:38 | - |
| 186.240.115.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | HK Powerline | 22/05/2026, 22:19:48 | 05/06/2026, 14:40:58 | No | No | - | - | 17/05/2026, 06:13:39 | - |
| 159.75.154.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 22:19:48 | 31/05/2026, 08:32:26 | No | Yes | APT37, El-Machete | - | 23/05/2026, 06:13:41 | - |
| 192.240.202.•••:20284 | - | 🇺🇸 United States | Yes | true | Leaked | AS20454 | SECURED SERVERS LLC | BMC Reserved IP | 22/05/2026, 22:19:48 | 07/06/2026, 01:11:46 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:13:42 | phoenixnap.com, securedservers.com |
| 27.71.233.•••:18789 | - | 🇻🇳 Vietnam | Yes | true | Leaked | AS7552 | Viettel Group | Viettel | 22/05/2026, 22:19:48 | 06/06/2026, 16:46:37 | Yes | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2005-0004, CVE-2006-20001, CVE-2012-0540, CVE-2012-0572, CVE-2012-0574, CVE-2012-0578, CVE-2012-1688, CVE-2012-1689, CVE-2012-1690, CVE-2012-1697, CVE-2012-1702, CVE-2012-1703, CVE-2012-1705, CVE-2012-1734, CVE-2012-1735, CVE-2012-1756, CVE-2012-1757, CVE-2012-2750, CVE-2012-3150, CVE-2012-3158, CVE-2012-3160, CVE-2012-3163, CVE-2012-3166, CVE-2012-3167, CVE-2012-3173, CVE-2012-3177, CVE-2012-3180, CVE-2012-3197, CVE-2012-5060, CVE-2012-5096, CVE-2012-5612, CVE-2012-5614, CVE-2012-5627, CVE-2013-0367, CVE-2013-0368, CVE-2013-0371, CVE-2013-0383, CVE-2013-0384, CVE-2013-0385, CVE-2013-0386, CVE-2013-0389, CVE-2013-1502, CVE-2013-1506, CVE-2013-1511, CVE-2013-1512, CVE-2013-1521, CVE-2013-1523, CVE-2013-1526, CVE-2013-1531, CVE-2013-1532, CVE-2013-1544, CVE-2013-1548, CVE-2013-1552, CVE-2013-1555, CVE-2013-1861, CVE-2013-2375, CVE-2013-2376, CVE-2013-2378, CVE-2013-2389, CVE-2013-2391, CVE-2013-2392, CVE-2013-3783, CVE-2013-3793, CVE-2013-3794, CVE-2013-3801, CVE-2013-3802, CVE-2013-3804, CVE-2013-3805, CVE-2013-3808, CVE-2013-3809, CVE-2013-3812, CVE-2013-3839, CVE-2013-5807, CVE-2013-5891, CVE-2013-5908, CVE-2014-0001, CVE-2014-0384, CVE-2014-0386, CVE-2014-0393, CVE-2014-0401, CVE-2014-0402, CVE-2014-0412, CVE-2014-0420, CVE-2014-0437, CVE-2014-2419, CVE-2014-2430, CVE-2014-2431, CVE-2014-2432, CVE-2014-2436, CVE-2014-2438, CVE-2014-2440, CVE-2014-2494, CVE-2014-4207, CVE-2014-4243, CVE-2014-4258, CVE-2014-4260, CVE-2014-4274, CVE-2014-4287, CVE-2014-6463, CVE-2014-6464, CVE-2014-6469, CVE-2014-6478, CVE-2014-6484, CVE-2014-6491, CVE-2014-6494, CVE-2014-6495, CVE-2014-6496, CVE-2014-6500, CVE-2014-6505, CVE-2014-6507, CVE-2014-6520, CVE-2014-6530, CVE-2014-6551, CVE-2014-6555, CVE-2014-6559, CVE-2014-6568, CVE-2015-0374, CVE-2015-0381, CVE-2015-0382, CVE-2015-0391, CVE-2015-0411, CVE-2015-0432, CVE-2015-0433, CVE-2015-0441, CVE-2015-0499, CVE-2015-0501, CVE-2015-0505, CVE-2015-2325, CVE-2015-2568, CVE-2015-2571, CVE-2015-2573, CVE-2015-2582, CVE-2015-2620, CVE-2015-2643, CVE-2015-2648, CVE-2015-3152, CVE-2015-4752, CVE-2015-4757, CVE-2015-4792, CVE-2015-4802, CVE-2015-4807, CVE-2015-4815, CVE-2015-4816, CVE-2015-4819, CVE-2015-4826, CVE-2015-4830, CVE-2015-4836, CVE-2015-4858, CVE-2015-4861, CVE-2015-4864, CVE-2015-4870, CVE-2015-4879, CVE-2015-4913, CVE-2015-7744, CVE-2016-0502, CVE-2016-0610, CVE-2016-0616, CVE-2016-0642, CVE-2016-0651, CVE-2016-20012, CVE-2016-3471, CVE-2016-3492, CVE-2016-5584, CVE-2016-5612, CVE-2016-5624, CVE-2016-5626, CVE-2016-5629, CVE-2016-6664, CVE-2016-7440, CVE-2016-9843, CVE-2017-10268, CVE-2017-10378, CVE-2017-10379, CVE-2017-10384, CVE-2017-15365, CVE-2017-15710, CVE-2017-15715, CVE-2017-3238, CVE-2017-3243, CVE-2017-3244, CVE-2017-3258, CVE-2017-3265, CVE-2017-3291, CVE-2017-3302, CVE-2017-3308, CVE-2017-3309, CVE-2017-3312, CVE-2017-3313, CVE-2017-3317, CVE-2017-3318, CVE-2017-3453, CVE-2017-3456, CVE-2017-3464, CVE-2017-3600, CVE-2017-3636, CVE-2017-3641, CVE-2017-3651, CVE-2017-3653, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-15473, CVE-2018-15919, CVE-2018-17189, CVE-2018-17199, CVE-2018-20685, CVE-2018-2562, CVE-2018-2622, CVE-2018-2640, CVE-2018-2665, CVE-2018-2668, CVE-2018-2755, CVE-2018-2761, CVE-2018-2767, CVE-2018-2771, CVE-2018-2781, CVE-2018-2813, CVE-2018-2817, CVE-2018-2819, CVE-2018-3058, CVE-2018-3063, CVE-2018-3066, CVE-2018-3081, CVE-2018-3133, CVE-2018-3174, CVE-2018-3282, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-2455, CVE-2019-2481, CVE-2019-2503, CVE-2019-2529, CVE-2019-2614, CVE-2019-2627, CVE-2019-2737, CVE-2019-2739, CVE-2019-2740, CVE-2019-2805, CVE-2019-2974, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9517, CVE-2020-11993, CVE-2020-13938, CVE-2020-14145, CVE-2020-14550, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-2574, CVE-2020-2752, CVE-2020-2780, CVE-2020-2812, CVE-2020-28912, CVE-2020-2922, CVE-2020-35452, CVE-2020-9490, CVE-2021-2007, CVE-2021-2011, CVE-2021-2144, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-33193, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2021-46659, CVE-2021-46666, CVE-2021-46667, CVE-2021-46669, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-27385, CVE-2022-27449, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31621, CVE-2022-31622, CVE-2022-31623, CVE-2022-31624, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2023-5157, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:13:44 | viettel.com.vn |
| 114.132.230.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 22:19:48 | 07/06/2026, 01:11:18 | Yes | No | - | CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 06:17:35 | tencent.com |
| 18.176.28.•••:18789 | - | 🇯🇵 Japan | Yes | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services Japan | 22/05/2026, 22:19:48 | 26/05/2026, 17:42:55 | No | - | - | - | 17/05/2026, 06:17:36 | - |
| 156.250.200.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Digital Core Technology Co. Limited | 22/05/2026, 22:19:48 | 05/06/2026, 07:36:10 | No | Yes | APT14, APT28, APT35, APT37, APT39, APT40, APT41, Cobalt Group, Earth Berberoka, Energetic Bear, Equation Group, Gamaredon Group, IronHusky, Kimsuky, Lazarus Group, Leafminer, Luckycat APT, Mustang Panda, Sandworm Team, SharpPanda, TA505, The Shadow Brokers, UNC2452, WIRTE | CVE-2006-20001, CVE-2010-1899, CVE-2010-2730, CVE-2010-3972, CVE-2017-15710, CVE-2017-15715, CVE-2017-9798, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-17189, CVE-2018-17199, CVE-2019-0196, CVE-2019-0197, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-9517, CVE-2020-11993, CVE-2020-13938, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-33193, CVE-2021-34798, CVE-2021-39275, CVE-2021-40438, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-31122, CVE-2023-38709, CVE-2023-45802, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-66200 | 23/05/2026, 06:17:38 | - |
| 120.53.16.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Beijing Voda Telecom | 22/05/2026, 22:19:48 | 07/06/2026, 01:11:53 | Yes | No | - | CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 06:17:40 | cnnic.cn |
| 47.92.26.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:48 | 05/06/2026, 06:11:11 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:17:41 | - |
| 111.45.23.•••:20170 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS9808 | China Mobile Communications Group Co., Ltd. | China Mobile | 22/05/2026, 22:19:48 | 04/06/2026, 07:18:00 | Yes | Yes | Packrat | - | 23/05/2026, 06:17:42 | chinamobile.com, chinamobile.cn |
| 34.201.139.•••:18789 | - | 🇺🇸 United States | Yes | false | Clean | AS14618 | Amazon.com, Inc. | Amazon | 22/05/2026, 22:19:48 | 23/05/2026, 06:45:26 | No | - | - | - | 17/05/2026, 06:17:43 | - |
| 115.190.40.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS137718 | Beijing Volcano Engine Technology Co., Ltd. | Beijing Volcano Engine Technology | 22/05/2026, 22:19:48 | 04/06/2026, 13:40:20 | Yes | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:17:44 | gwbn.net.cn |
| 217.160.191.•••:443 | - | 🇩🇪 Germany | Yes | false | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | IONOS | 22/05/2026, 22:19:48 | 29/05/2026, 11:26:53 | Yes | No | - | CVE-2016-20012, CVE-2020-14145, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 23/05/2026, 06:17:46 | takin.it |
| 47.253.81.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud US | 22/05/2026, 22:19:48 | 04/06/2026, 16:30:35 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:17:48 | - |
| 2.26.23.•••:18789 | - | 🇫🇮 Finland | Yes | true | Clean | AS215590 | DpkgSoft International Limited | Helsinki | 22/05/2026, 22:19:48 | 05/06/2026, 00:33:06 | No | - | - | - | 17/05/2026, 06:17:50 | - |
| 186.240.25.•••:18789 | - | 🇭🇰 Hong Kong | Yes | false | Clean | AS132839 | POWER LINE DATACENTER | HK Powerline | 22/05/2026, 22:19:48 | 29/05/2026, 17:11:09 | - | - | - | - | - | - |
| 8.136.159.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 22/05/2026, 22:19:48 | 07/06/2026, 01:11:53 | - | - | - | - | - | - |
| 5.75.230.•••:18789 | - | 🇩🇪 Germany | Yes | true | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 22/05/2026, 22:19:48 | 04/06/2026, 20:18:58 | Yes | Yes | Salt Typhoon | CVE-2016-20012, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:17:53 | hetzner.com |
| 47.100.244.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:48 | 05/06/2026, 03:22:23 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:17:55 | - |
| 47.98.116.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:48 | 23/05/2026, 06:45:26 | No | No | - | - | 17/05/2026, 06:17:57 | - |
| 129.121.97.•••:80 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | OGTIPS1 | 22/05/2026, 22:19:48 | 04/06/2026, 11:33:17 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:17:58 | athenixinc.com, hostmonster.com, site5.com, domain.com, readyhosting.com, homestead.com, endurance.com, mojomarketplace.com, mybluehost.me, dotster.com, bluehost.com |
| 39.98.183.•••:50001 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:48 | 23/05/2026, 06:45:26 | Yes | - | - | CVE-2014-4078 | 23/05/2026, 06:17:59 | aliyun.com |
| 47.74.40.•••:18789 | - | 🇯🇵 Japan | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Japan | 22/05/2026, 22:19:48 | 04/06/2026, 19:36:27 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:18:00 | - |
| 60.185.243.•••:8088 | - | 🇨🇳 China mainland | Yes | false | Clean | AS4134 | Chinanet | CHINANET-ZJ-ZS | 22/05/2026, 22:19:48 | 26/05/2026, 09:16:58 | No | No | - | - | 17/05/2026, 06:18:01 | - |
| 156.234.87.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS138415 | Yancy Limited | Yancy Limited | 22/05/2026, 22:19:48 | 06/06/2026, 23:06:11 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 23/05/2026, 06:18:02 | - |
| 1.194.210.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS139587 | China Telecom Henan Zhengzhou Shujugang IDC network | ChinaNet Henan Province Network | 22/05/2026, 22:19:48 | 23/05/2026, 06:45:26 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 23/05/2026, 06:18:05 | - |
| 167.99.225.•••:443 | - | 🇺🇸 United States | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 22:19:47 | 01/06/2026, 01:18:31 | No | Yes | APT1 Comment Crew, APT14, APT15, APT27, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Longzhi, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, Turla APT Group, UNC2452, Volt Typhoon, WIRTE, WildCard APT | CVE-2006-20001, CVE-2015-8325, CVE-2015-9251, CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-1546, CVE-2016-20012, CVE-2016-3115, CVE-2016-4975, CVE-2016-4979, CVE-2016-5387, CVE-2016-6210, CVE-2016-6515, CVE-2016-8612, CVE-2016-8740, CVE-2016-8743, CVE-2016-8858, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-3169, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-15473, CVE-2018-15919, CVE-2018-17189, CVE-2018-17199, CVE-2018-20685, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-11358, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11022, CVE-2020-11023, CVE-2020-11985, CVE-2020-13938, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-23064, CVE-2020-35452, CVE-2021-26690, CVE-2021-26691, CVE-2021-33193, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-29323, CVE-2023-31122, CVE-2023-35784, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-1322, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2025-26465, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:18:06 | - |
| 43.130.28.•••:8080 | - | 🇸🇬 Singapore | Yes | true | Leaked | AS132203 | Tencent Building, Kejizhongyi Avenue | 6 Collyer Quay | 22/05/2026, 22:19:47 | 04/06/2026, 20:19:05 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:18:08 | tencent.com |
| 206.168.190.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS14315 | 1GSERVERS, LLC | [name redacted] | 22/05/2026, 22:19:47 | 02/06/2026, 01:53:48 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:22:06 | 1gservers.com |
| 38.6.18.•••:443 | - | 🇯🇵 Japan | Yes | false | Clean | AS398993 | PEG TECH INC | Polyethylene Glycol-Lipid Association | 22/05/2026, 22:19:47 | 30/05/2026, 01:38:41 | No | No | - | - | 17/05/2026, 06:22:09 | - |
| 2a02:4780:5e:43c3::1:18789 | - | 🇲🇾 Malaysia | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 22/05/2026, 22:19:47 | 04/06/2026, 08:43:59 | - | - | - | - | - | - |
| 154.203.109.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 22:19:47 | 04/06/2026, 07:17:58 | No | - | - | - | 17/05/2026, 06:22:12 | - |
| 156.247.105.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Octopus Web Solution Inc | 22/05/2026, 22:19:47 | 07/06/2026, 00:30:46 | No | No | - | CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 06:22:13 | - |
| 101.71.236.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS4837 | CHINA UNICOM China169 Backbone | Unicom Zhejiang Province Network | 22/05/2026, 22:19:47 | 25/05/2026, 19:13:50 | Yes | No | - | - | 23/05/2026, 06:22:14 | chinaunicom.cn |
| 159.65.152.•••:18789 | - | 🇮🇳 India | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 22:19:47 | 06/06/2026, 09:46:22 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2023-51767, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:22:15 | - |
| 39.98.87.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:47 | 04/06/2026, 20:19:02 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 23/05/2026, 06:22:16 | aliyun.com |
| 34.68.76.•••:3000 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 22/05/2026, 22:19:47 | 05/06/2026, 21:48:25 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:51:39 | - | |
| 34.148.95.•••:18018 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 22/05/2026, 22:19:47 | 04/06/2026, 18:42:04 | No | Yes | APT17, APT29, APT35, APT36, APT37, APT40, APT41, APT45, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Kimsuky, MuddyWater Group, Patchwork, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:22:17 | - | |
| 45.8.196.•••:18789 | - | 🇹🇷 Türkiye | Yes | false | Clean | AS208483 | -----BEGIN TOKEN-----a507bb1027b3e51a3949180591e5dd7828704b983da4ef9bf2c21fca0095fb6239365d184f225a91dae37d524492bb2d803c2fb0e5b08e9e26c1c33fdd62bfb3-----END TOKEN----- | WERIDATA-LLC | 22/05/2026, 22:19:47 | 07/06/2026, 00:30:50 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 23/05/2026, 06:22:22 | - |
| 124.222.140.•••:443 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 22:19:47 | 26/05/2026, 05:02:54 | Yes | Yes | APT37, El-Machete | - | 23/05/2026, 06:22:23 | tencent.com |
| 47.103.81.•••:8082 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:47 | 07/06/2026, 01:11:34 | No | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617 | 23/05/2026, 06:22:24 | - |
| 163.192.23.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 22/05/2026, 22:19:47 | 06/06/2026, 08:21:45 | Yes | No | - | CVE-2023-44487, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:25:54 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 154.203.124.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 22:19:47 | 04/06/2026, 06:34:54 | No | - | - | - | 17/05/2026, 06:25:55 | - |
| 125.64.244.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS4134 | Chinanet | ChinaNet Sichuan | 22/05/2026, 22:19:47 | 04/06/2026, 03:44:03 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:25:56 | bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, ideal.sh.cn, daqu.com.cn, ctyun.cn |
| 8.148.22.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 22/05/2026, 22:19:47 | 06/06/2026, 21:41:28 | No | - | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 23/05/2026, 06:25:58 | - |
| 116.196.115.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS23724 | IDC, China Telecommunications Corporation / AS4808 China Unicom Beijing Province Network | JD.com | 22/05/2026, 22:19:47 | 23/05/2026, 06:45:25 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:26:00 | jdl.cn, vackbot.com, vg.com, jdfinance.com, 51buy.com, blackdragon.com, jddj.com, 7fresh.com, jd.com, 360buy.com, chinabank.com.cn, 360buyimg.com, imdada.cn, jdh.com |
| 185.204.170.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS57568 | ARVANCLOUD GLOBAL TECHNOLOGIES L.L.C | ArvanCloud | 22/05/2026, 22:19:47 | 07/06/2026, 01:11:22 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:26:01 | - |
| 124.220.18.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 22:19:47 | 04/06/2026, 11:33:12 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 23/05/2026, 06:26:34 | tencent.com |
| 2a02:4780:79:7f30::1:18789 | - | 🇩🇪 Germany | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 22/05/2026, 22:19:47 | 05/06/2026, 07:36:03 | - | - | - | - | - | - |
| 66.63.177.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | HostPapa | 22/05/2026, 22:19:47 | 07/06/2026, 01:11:21 | Yes | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:26:38 | qzz.io, hostpapa.com |
| 47.242.222.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud HK | 22/05/2026, 22:19:47 | 04/06/2026, 18:42:05 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:26:39 | - |
| 20.101.76.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 22/05/2026, 22:19:47 | 04/06/2026, 20:19:05 | - | - | - | - | - | - |
| 64.23.206.•••:443 | - | 🇺🇸 United States | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 22:19:47 | 06/06/2026, 22:23:49 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Chimera APT, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-13704, CVE-2017-14491, CVE-2017-14492, CVE-2017-14493, CVE-2017-14494, CVE-2017-14495, CVE-2017-14496, CVE-2017-15107, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-14834, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2020-25681, CVE-2020-25682, CVE-2020-25683, CVE-2020-25684, CVE-2020-25685, CVE-2020-25686, CVE-2020-25687, CVE-2021-3448, CVE-2021-36368, CVE-2021-41617, CVE-2022-0934, CVE-2023-28450, CVE-2023-38408, CVE-2023-48795, CVE-2023-50387, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:26:42 | - |
| 157.255.62.•••:20154 | - | 🇨🇳 China mainland | Yes | true | Clean | AS136958 | China Unicom Guangdong IP network | China Unicom Guangdong | 22/05/2026, 22:19:46 | 07/06/2026, 01:11:18 | - | - | - | - | - | - |
| 45.119.212.•••:443 | - | 🇻🇳 Vietnam | Yes | true | Clean | AS131423 | Branch of Long Van System Solution JSC - Hanoi | Long Van System Solution Hanoi Branch | 22/05/2026, 22:19:46 | 07/06/2026, 01:11:32 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:26:35 | - |
| 39.98.92.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:46 | 04/06/2026, 05:52:27 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Packrat, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 23/05/2026, 06:26:45 | aliyun.com |
| 34.154.31.•••:18789 | Assistant | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 22/05/2026, 22:19:46 | 06/06/2026, 21:41:25 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-14145, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728 | 23/05/2026, 06:26:46 | - | |
| 183.60.247.•••:20145 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS4134 | Chinanet | CHINANET Guangdong | 22/05/2026, 22:19:46 | 06/06/2026, 09:46:20 | Yes | No | - | - | 23/05/2026, 06:26:47 | bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, ideal.sh.cn, daqu.com.cn, ctyun.cn |
| 42.51.40.•••:50000 | - | 🇨🇳 China mainland | Yes | false | Clean | AS56005 | Zhengzhou Fastidc Technology Co.,Ltd. | Henan Telcom Union Technology | 22/05/2026, 22:19:46 | 23/05/2026, 06:45:24 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:26:48 | - |
| 202.140.142.•••:10088 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS146817 | Hubei Feixun Network Co., Ltd | Hubei Feixun Network | 22/05/2026, 22:19:46 | 01/06/2026, 16:07:59 | Yes | No | - | CVE-2006-20001, CVE-2014-4078, CVE-2016-1546, CVE-2016-20012, CVE-2016-4975, CVE-2016-4979, CVE-2016-5387, CVE-2016-8612, CVE-2016-8740, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-3169, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-11763, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-1333, CVE-2018-15473, CVE-2018-15919, CVE-2018-17189, CVE-2018-17199, CVE-2018-20685, CVE-2019-0196, CVE-2019-0211, CVE-2019-0217, CVE-2019-0220, CVE-2019-10082, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-13938, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2021-26690, CVE-2021-26691, CVE-2021-33193, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:26:55 | cnnic.cn |
| 168.76.217.•••:18789 | - | 🇿🇦 South Africa | Yes | true | Clean | AS137951 | ASLINE LIMITED | Free State Education Department | 22/05/2026, 22:19:46 | 07/06/2026, 01:11:25 | No | No | - | CVE-2014-4078 | 23/05/2026, 06:31:00 | - |
| 43.135.149.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS132203 | Tencent Building, Kejizhongyi Avenue | Aceville Pte Ltd | 22/05/2026, 22:19:46 | 06/06/2026, 10:28:28 | Yes | Yes | APT15, APT17, APT28, APT31, APT35, APT36, APT37, APT39, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 06:31:02 | tencent.com |
| 168.76.211.•••:18789 | - | 🇿🇦 South Africa | Yes | true | Clean | AS137951 | ASLINE LIMITED | Free State Education Department | 22/05/2026, 22:19:46 | 06/06/2026, 18:53:00 | No | No | - | - | 17/05/2026, 06:31:03 | - |
| 46.224.153.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 22/05/2026, 22:19:46 | 04/06/2026, 15:48:09 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 06:31:06 | - |
| 8.136.190.•••:18789 | - | 🇸🇬 Singapore | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 22/05/2026, 22:19:46 | 26/05/2026, 08:34:36 | - | - | - | - | - | - |
| 95.111.235.•••:18789 | - | 🇫🇷 France | Yes | true | Leaked | AS51167 | Contabo GmbH | Contabo | 22/05/2026, 22:19:46 | 04/06/2026, 20:18:59 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728 | 23/05/2026, 01:07:28 | contaboserver.net |
| 186.240.113.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | HK Powerline | 22/05/2026, 22:19:46 | 05/06/2026, 15:23:47 | No | No | - | - | 17/05/2026, 01:07:29 | - |
| 47.252.9.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud US | 22/05/2026, 22:19:46 | 01/06/2026, 01:18:33 | - | - | - | - | - | - |
| 111.50.73.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS9808 | China Mobile Communications Group Co., Ltd. | China Mobile | 22/05/2026, 22:19:46 | 06/06/2026, 18:10:47 | Yes | No | - | - | 23/05/2026, 01:07:33 | chinamobile.com, chinamobile.cn |
| 34.175.35.•••:18789 | Assistant | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 22/05/2026, 22:19:46 | 06/06/2026, 22:23:53 | - | - | - | - | - | - | |
| 47.92.240.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 22:19:46 | 03/06/2026, 16:56:59 | No | No | - | - | 17/05/2026, 01:07:35 | - |
| 124.221.74.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 22:19:46 | 07/06/2026, 01:11:47 | Yes | Yes | APT37, El-Machete | - | 23/05/2026, 01:07:37 | tencent.com |
| 95.142.41.•••:443 | - | 🇳🇱 Netherlands | Yes | true | Leaked | AS216139 | Iron Hosting Centre LTD | Eurobyte | 22/05/2026, 22:19:46 | 01/06/2026, 19:37:01 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 01:07:38 | used-kayaks.com, mchost.ru, njbiomaterials.org, hisgames.org, clipart-library.com |
| 129.154.248.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 22/05/2026, 22:19:46 | 04/06/2026, 14:22:51 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-6484, CVE-2024-6485, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 01:07:39 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 2a02:4780:75:6001::1:3001 | - | 🇺🇸 United States | - | false | Clean | AS47583 | Hostinger International Limited | Hostinger | 22/05/2026, 22:19:46 | 29/05/2026, 07:12:16 | - | - | - | - | - | - |
| 129.121.97.•••:80 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | OGTIPS1 | 22/05/2026, 22:19:46 | 06/06/2026, 18:53:00 | Yes | No | - | CVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 01:07:43 | athenixinc.com, hostmonster.com, site5.com, domain.com, readyhosting.com, homestead.com, endurance.com, mojomarketplace.com, dotster.com, bluehost.com |
| 43.250.173.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS62468 | VpsQuan L.L.C. | HK United | 22/05/2026, 22:19:46 | 06/06/2026, 14:40:15 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 01:07:44 | - |
| 43.136.69.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 22:19:46 | 06/06/2026, 20:59:16 | Yes | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2021-43980, CVE-2022-25762, CVE-2022-29885, CVE-2022-34305, CVE-2022-42252, CVE-2023-28531, CVE-2023-28708, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 01:07:45 | tencent.com |
| 149.202.80.•••:443 | - | 🇫🇷 France | Yes | true | Leaked | AS16276 | OVH SAS | OVH | 22/05/2026, 22:19:46 | 07/06/2026, 01:11:49 | Yes | No | - | CVE-2006-20001, CVE-2021-23017, CVE-2021-3618, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-41741, CVE-2022-41742, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-6387, CVE-2024-7347, CVE-2025-23048, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-59788, CVE-2025-61984, CVE-2025-61985, CVE-2025-66510 | 23/05/2026, 01:07:50 | ovh.net |
| 8.148.190.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 22/05/2026, 22:19:46 | 06/06/2026, 16:04:29 | No | No | - | - | 17/05/2026, 01:07:53 | - |
| 3.238.224.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 22/05/2026, 22:19:46 | 06/06/2026, 21:41:28 | No | No | - | - | 17/05/2026, 01:07:56 | - |