🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 926582 Page: 575 / 9266 (100 per page) Showing: 57401-57500 Last Imported: 07/06/2026, 03:36:56
🇨🇳 458,280
🇺🇸 265,401
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 156.234.27.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS138415 | Yancy Limited | Yancy Limited | 22/05/2026, 21:34:15 | 06/06/2026, 21:37:25 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 25/05/2026, 22:41:07 | - |
| 168.76.210.•••:18789 | - | 🇿🇦 South Africa | Yes | true | Clean | AS137951 | ASLINE LIMITED | Free State Education Department | 22/05/2026, 21:34:15 | 06/06/2026, 01:16:58 | No | No | - | CVE-2014-4078 | 31/05/2026, 00:04:40 | - |
| 150.158.181.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 21:34:15 | 06/06/2026, 16:00:26 | Yes | Yes | APT37, El-Machete | - | 29/05/2026, 00:48:53 | tencent.com |
| 154.203.123.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 21:34:15 | 05/06/2026, 06:07:07 | No | - | - | - | 24/05/2026, 00:52:40 | - |
| 156.234.13.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS138415 | Yancy Limited | Yancy Limited | 22/05/2026, 21:34:15 | 06/06/2026, 11:06:15 | No | No | - | - | 22/05/2026, 00:00:59 | - |
| 77.68.99.•••:18789 | - | 🇬🇧 United Kingdom | - | true | Leaked | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | Next Generation Cloud Server | 22/05/2026, 21:34:14 | 04/06/2026, 22:22:29 | Yes | - | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 31/05/2026, 13:21:01 | fasthosts.co.uk, live-servers.net |
| 8.136.29.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 22/05/2026, 21:34:14 | 05/06/2026, 03:18:24 | - | - | - | - | - | - |
| 104.21.50.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS13335 | Cloudflare, Inc. | Cloudflare | 22/05/2026, 21:34:14 | 23/05/2026, 03:52:31 | - | - | - | - | - | - |
| 168.76.213.•••:18789 | - | 🇿🇦 South Africa | Yes | true | Clean | AS137951 | ASLINE LIMITED | Free State Education Department | 22/05/2026, 21:34:14 | 03/06/2026, 23:21:52 | No | No | - | CVE-2014-4078 | 26/05/2026, 00:49:17 | - |
| 47.92.69.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 21:34:14 | 04/06/2026, 10:46:44 | No | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51385, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728 | 26/05/2026, 03:34:25 | - |
| 156.247.105.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Octopus Web Solution Inc | 22/05/2026, 21:34:14 | 07/06/2026, 01:08:25 | No | No | - | CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 25/05/2026, 19:10:57 | - |
| 35.93.190.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 22/05/2026, 21:34:14 | 05/06/2026, 00:29:02 | No | No | - | CVE-2023-38709, CVE-2024-24795, CVE-2024-27316, CVE-2024-36387, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2025-23048, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-66200 | 26/05/2026, 19:46:35 | - |
| 159.54.142.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 22/05/2026, 21:34:14 | 01/06/2026, 06:55:31 | Yes | No | - | CVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 25/05/2026, 23:26:51 | healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 117.10.124.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS4837 | CHINA UNICOM China169 Backbone | China Unicom Tianjin | 22/05/2026, 21:34:14 | 23/05/2026, 03:52:31 | - | - | - | - | - | - |
| 13.53.218.•••:18789 | - | 🇸🇪 Sweden | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services Sweden | 22/05/2026, 21:34:14 | 07/06/2026, 01:07:59 | No | No | - | - | 20/05/2026, 03:35:19 | - |
| 96.9.225.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS18450 | WebNX, Inc. | 365 Group | 22/05/2026, 21:34:14 | 05/06/2026, 06:07:12 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 02/06/2026, 00:29:31 | - |
| 47.106.13.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 21:34:14 | 25/05/2026, 21:58:24 | - | - | - | - | - | - |
| 190.225.231.•••:18789 | - | 🇦🇷 Argentina | - | false | Clean | AS7303 | Telecom Argentina S.A. | Apolo Gold Telecom Peru | 22/05/2026, 21:34:14 | 23/05/2026, 03:52:31 | - | - | - | - | - | - |
| 120.77.147.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 21:34:14 | 05/06/2026, 19:36:19 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 30/05/2026, 10:47:28 | aliyun.com |
| 34.95.228.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS396982 | Google LLC | 22/05/2026, 21:34:14 | 23/05/2026, 03:52:31 | - | - | - | - | - | - | |
| 152.136.214.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 21:34:14 | 04/06/2026, 12:53:42 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 01/06/2026, 17:26:57 | - |
| 161.35.213.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 21:34:14 | 06/06/2026, 14:36:17 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 28/05/2026, 19:54:15 | - |
| 2a02:c204:2326:8176::1:18789 | - | 🇬🇧 United Kingdom | - | true | Clean | AS51167 | Contabo GmbH | Contabo | 22/05/2026, 21:34:14 | 04/06/2026, 00:04:42 | - | - | - | - | - | - |
| 54.254.3.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services Japan | 22/05/2026, 21:34:14 | 06/06/2026, 18:48:54 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 29/05/2026, 02:13:10 | - |
| 2a02:4780:5e:4898::1:18789 | - | 🇲🇾 Malaysia | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 22/05/2026, 21:34:14 | 07/06/2026, 01:07:44 | - | - | - | - | - | - |
| 154.210.54.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 21:34:14 | 06/06/2026, 07:35:38 | No | No | - | - | 17/05/2026, 19:19:09 | - |
| 77.37.236.•••:18789 | - | 🇷🇺 Russia | - | true | Clean | AS42610 | OJSC "National Cable Networks" | NKS Broadband | 22/05/2026, 21:34:14 | 06/06/2026, 04:46:54 | No | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT36, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Turla APT Group, Volt Typhoon | CVE-2016-20012, CVE-2018-16843, CVE-2018-16844, CVE-2018-16845, CVE-2018-5740, CVE-2018-5741, CVE-2018-5743, CVE-2018-5744, CVE-2018-5745, CVE-2019-20372, CVE-2019-6465, CVE-2019-6470, CVE-2019-6471, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-8616, CVE-2020-8617, CVE-2020-8622, CVE-2020-8623, CVE-2020-8624, CVE-2020-8625, CVE-2021-23017, CVE-2021-25214, CVE-2021-25215, CVE-2021-25216, CVE-2021-25219, CVE-2021-25220, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-2795, CVE-2022-38177, CVE-2022-38178, CVE-2022-41741, CVE-2022-41742, CVE-2023-2828, CVE-2023-2829, CVE-2023-2911, CVE-2023-3341, CVE-2023-38408, CVE-2023-4236, CVE-2023-4408, CVE-2023-44487, CVE-2023-48795, CVE-2023-50387, CVE-2023-51384, CVE-2023-51385, CVE-2023-5517, CVE-2023-5679, CVE-2023-5680, CVE-2024-11187, CVE-2024-12705, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 26/05/2026, 08:30:10 | - |
| 38.6.18.•••:18789 | - | 🇯🇵 Japan | Yes | false | Clean | AS398993 | PEG TECH INC | Polyethylene Glycol-Lipid Association | 22/05/2026, 21:34:14 | 29/05/2026, 10:40:28 | No | No | - | - | 20/05/2026, 00:47:39 | - |
| 34.162.65.•••:18789 | Assistant | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 22/05/2026, 21:34:14 | 06/06/2026, 17:24:35 | No | Yes | APT15, APT28, APT31, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT | CVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 26/05/2026, 00:49:56 | - | |
| 46.225.119.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 22/05/2026, 21:34:14 | 06/06/2026, 22:19:44 | - | - | - | - | - | - |
| 154.203.127.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 21:34:14 | 05/06/2026, 19:36:16 | No | - | - | - | 19/05/2026, 17:46:02 | - |
| 194.110.55.•••:18789 | - | 🇰🇿 Kazakhstan | - | false | Clean | AS48716 | PS Internet Company LLP | PS Internet Company | 22/05/2026, 21:34:13 | 23/05/2026, 05:59:27 | - | - | - | - | - | - |
| 46.224.169.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 22/05/2026, 21:34:13 | 06/06/2026, 01:16:56 | No | No | - | CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 25/05/2026, 23:23:43 | - |
| 54.242.46.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 22/05/2026, 21:34:13 | 07/06/2026, 01:07:40 | No | No | - | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 04/06/2026, 12:13:18 | - |
| 154.210.52.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 21:34:13 | 07/06/2026, 01:08:09 | No | No | - | - | 19/05/2026, 22:39:57 | - |
| 8.219.132.•••:18789 | - | 🇸🇬 Singapore | Yes | false | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Singapore | 22/05/2026, 21:32:16 | 24/05/2026, 09:13:23 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 22/05/2026, 22:56:48 | - |
| 178.105.3.•••:18789 | - | 🇩🇪 Germany | - | false | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 22/05/2026, 21:32:16 | 24/05/2026, 09:13:23 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 22/05/2026, 22:56:49 | hetzner.com |
| 3.83.145.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 22/05/2026, 21:32:15 | 02/06/2026, 19:39:49 | No | No | - | - | 16/05/2026, 22:57:02 | - |
| 143.198.98.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 21:32:15 | 05/06/2026, 16:43:40 | No | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2016-20012, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13938, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 22/05/2026, 22:57:04 | - |
| 52.255.110.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS8075 | Microsoft Corporation | Microsoft | 22/05/2026, 21:32:15 | 24/05/2026, 09:55:26 | - | - | - | - | - | - |
| 101.47.23.•••:18789 | - | 🇸🇬 Singapore | - | false | Leaked | AS150436 | Byteplus Pte. Ltd. | Byteplus | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:26 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 22/05/2026, 22:57:07 | bytedance.com |
| 20.165.173.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS8075 | Microsoft Corporation | Microsoft | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:26 | - | - | - | - | - | - |
| 20.45.58.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS8075 | Microsoft Corporation | Microsoft | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:25 | No | No | - | - | 16/05/2026, 22:57:09 | - |
| 31.70.85.•••:18789 | - | 🇩🇪 Germany | - | false | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | Ionos Cloud TXL | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:25 | - | - | - | - | - | - |
| 20.225.234.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS8075 | Microsoft Corporation | Microsoft | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:25 | - | - | - | - | - | - |
| 104.215.73.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS8075 | Microsoft Corporation | Microsoft | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:25 | No | - | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 22/05/2026, 22:57:16 | - |
| 172.67.207.•••:18789 | - | 🇺🇸 United States | - | false | Leaked | AS13335 | Cloudflare, Inc. | Cloudflare | 22/05/2026, 21:32:14 | 24/05/2026, 09:55:25 | Yes | No | - | - | 22/05/2026, 22:57:18 | fuyuanwj.com, sh-hibo.com, jxxlxj.com, changjai.net, prakantidrod.net, atcevents.com, stonesautobody.com, mwtransport.com, cgmprecast.com, tshlkj.net, prakantidlhobroker.net, sdkyjt.net, luckyplastic.net, bikeweeksa.com, pragantidloh.net, polytexus.com, ics-line.com, tidlohinsurance.net, dekorativka.cz, butterflycafefortcollins.com, hzfeidi.com, electronicengineering.com, limpiom.net, fricksfashion.com, sz-jl.com, bbbiotechconference.com, novaforensic.com, hbbygd88.com, areetechbroker.net, avanlerberghe.com, techtidlor.net, areefin.org, vinium.com, fuhuake.com, cityfied.net, gx101.com, abpincorp.com, techtidloh.net, rightwaytrading.net, wenchyuan.com, medtecjapan.com, decherd.net, best-tech.us, prakuntidlho.net, anlink.net, jxygcy.com, xl-flex.com, breakingnews.ie, jekotrade.com, hmcxjc.com, jindianglass.net, shsinotech.com, shczhsyy.com, vbankph.com, insuretidlor.com, gipnutmeg.com, xjhhcm.com, mervice.in, bopcon.com, yarmouth.ma.us, resoto.com, jiuliproduce.com, techtidlor.ai, ytxweb.net, goodgoodinsurance.net, licenseglobal.com, paperex-expo.com, viralthread.com, adoptium.net, retrievalmasters.com, chinasyh.net, boyu-group.com, fiyanoventures.com, ekakitchen.com, carleaseusa.com, theinnotech.net, jyskaiyue.com, wisehousetech.com, whitelabel-insurance.net, cloudflare.net, pragantidlho.net, changjai.com, advancedsecuritysystemsva.com, georgiareporting.com, qd-baolian.com, csofam.com, co.com, goodgoodinsurance.com, kidsbud.net, prakantidloh.net, aviationnow.com, yarmouth.me.us, chicpartydress.com, jxlingtong.com, acmecomponents.com, labntl.com, containersuplementos.com.br, collectiblesgroup.com, feedstuffs.com, ngerntidlor.biz, remote2.org, covinsales.com, baselinewoods.com, prakantidlobroker.net, barnestowingde.com, bestrun.net, praguntidlohbroker.net, jiabinnu.com, supplyhq.com, yourfairoaksdentist.com, willcctv.com, sisbarro-buickgmc.com, putec.com.br, cherawfamilydentistry.com, prakantidlho.net, alghanitex.com, qzz.io, birminghamneograft.com, broadreachcorporation.com, praguntidlhobroker.net, tidlorgpt.net, kfstock.com, gatsbylabs.com, prakantidlor.com, porcelainchina.net, praguntidlho.net, tidlortech.ai, ngerntidloronline.org, byrdaviationbooks.com, jaihaiinsure.org, brownsprinting.com, expocihac.com, prakuntidrod.com, xxglasses.net, m-printone.com, cloudhq-mkt6.net, affliliatemoney.com, somersmanor.com, forwardwirecloth.net, cclvcr.com, timing-tech.com, klmymmyc.com, hersheyharrisburgbeer.com, us.org, aquastorenw.com, bolinyinwu.net, prakuntidloh.net, southdalemabryselfstorage.com, chunxinghejin.com, verdoc.co, hnbeixiang.com, mingstone.net, chinayinshufood.com, labntl.net, leisonhk.com, tidlohinsurancebroker.net, refee.net, xjzljt.net, areetechinsurance.net, xjjingyoga.com, gpchain.com, dongfanggufen.net, sxgas.net, wakechem.com, 3ecpa.com.sg, tidjaiinsure.org, frescobrescia.it, themxgroup.com, 1haojiyin.com, sinotransfj.com, dzrjx.net, central.ie, prakuntidlhobroker.net, marttalktechnologies.com, aptenonsjz.com, globalinternation.com, maryelexports.com, infradriven.net, code-china.com, itiswritten.tv, leixinfoods.net, detongwiremesh.com, goldplateck.com, www.us.com, ibcglobal.com, srisawad.org, sanhoos.com, aritechinsure.net, expowest.com, dgclh.com, pragantidlobroker.net, bamko.net, ausarabbusinesscouncil.com, lstcarbon.com, vinnellarabia.com, retailtrafficmag.com, irishexaminer.com, cphi.com, it.com, ngerntidlor.org, westernpeople.ie, ttstest.com, china-ycgkjx.com, tidlortech.co, gaetanasnyc.com, oukay.net, echolive.ie, tidlohtech.net, irrigationsystems4u.com, halcotestingservices.com, whitelabel-insurance.com, whitelableinsurance.com, praguntidloh.net, boxboard.com, yhjgkeji.com, pellar.io, tidlohtech.co, essexroc.com, www.eu.com, globaltestsolutions.com, pragantidlo.net, lgeorgeswalledlake.com, hongyang0769.net, china-one.net, lowesprosupply.com, kingdisplay.net, jssd.net, eu.org, techtidlor.co, bierte.com, jadzdjm.com, aritechinsurance.net, pesasybalanzas.com, tidlohinsurance.com, superiorskycaps.com, arigator.org, srisawad.com, ttyt360.com, mitiasortho.com, rayinmind.com, www.de.com, areetechinsure.net, informamarketsjapan.com, jz5288.com, tahaluf.com, insurancetidlor.net, insuretidlor.net, crescentfarmsc.com, bozhongyuan.com, kalaifashions.com, newyorkfarmshow.com, insurancetidlor.com, marethousefitness.com, shinruey.net, basis.org, zgkaite.com, turnoutservices.com, brentwoodvisioncenter.com, gnsfoods.com, zjdddl.com, ngerntidlorweb.org, moneyaffi.com, dqkeyi.com, ranscustombuilders.com, huadewood.com, praguntidlo.net, tidrian.com, renalidaexplained.com, tidlor.net, concordiaed.com, oracle-ag.ch, eyes-armour.com, zjhrbz.com, areetech.org, zhaowoo.net, prakantidlohbroker.net, jiangsufuji.com, safeindiaexpo.com, fernandezdentistry.com, eb5aig.net, tidlorgpt.com, techtidloh.ai, iirusa.com, bestwanhui.com, ngerntidlors.org, april-international.com, ngerntidlor.net, tidlhoinsurance.net, eldec-usa.com, hkbolton.com, prakuntidlobroker.net, pragantidlhobroker.net, areegator.org, mark1airforce.com, prakuntidlohbroker.net, whitelableinsurance.net, bain86.com, fxgowin.com, prakantidrod.com, bravatur.com.br, strongvalve.com, zhujigema.net, ehspartnerships.com, tidlohtech.ai, luckywaymall.com, tidlhoinsurancebroker.net, seiboldcompanies.com, taocimall.com, gogo-garage.com, prakuntidrod.net, licensetidlor.com, greenwoodparkgallery.com, collectors-society.com, arisure.org, twinstatesharley.com, workers.dev, chaolipack.com, shieldinsurebroker.net, newoceanfood.com, bjzthb.com, dechuangjixie.com, reteck.net, dartong.net, shieldinsure.net, tigerexpressfuel.com, jinpac.com, apeloa-kangyu.com, 360-xj.com, tidlor.org, xjwfcj.com, co.zm, affordableawningsco.com, cgccomics.com, oishiisushi.dk, pet-bottle.net, pollyholding.com, prakuntidlor.org, anhuaabrasives.net, prakantidlor.net, prakantidlo.net, importandexportspecializedequipmentandservicesinc.com, impresosmonterrey.com, shworldbest.com, zsnet.net, dongguansenzi.com, solve.care, cardnutricao.com.br, areetech.in, carmaxbolivia.com, prakuntidlo.net, sdfengze.net, canontradeshows.com, designnews.com, informamarkets-info.com, china114.net, lassocountry.com, propetchina.com, areesure.org, needingworthcampers.com, littleramonas.com, techtidloh.co, shieldinsurancebroker.net, centrodentariocostaazul.com, ridgwayhatchery.com, ngccoin.com, houstmust.com, arcgroup.com, praguntidlobroker.net, gogreendistrict.com, money2020middleeast.com, hy189.net, chinakangtai.net, tidloinsurancebroker.net, northerncomforthvac.com, diamondtea.com, alyssajeansignatureevents.com, germanpool-nb.com, ferrovale.com.br, xjhongshun.com, nowakproducts.com, pragantidlohbroker.net, infradriven.com, crossroadsgrille.net, aritechbroker.net, geochem.org, food-machines.net, mega-stuttgart.de, whir.com, tortastiadina.com.br, tidlortech.net, equinaceaprodutosnaturais.com, tidloinsurance.net, dmln.net, intertec.com |
| 13.53.218.•••:18789 | - | 🇸🇪 Sweden | - | false | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services Sweden | 22/05/2026, 21:32:14 | 24/05/2026, 10:37:33 | No | No | - | - | 16/05/2026, 22:57:19 | - |
| 34.95.228.•••:18789 | - | 🇺🇸 United States | - | false | Clean | AS396982 | Google LLC | 22/05/2026, 21:32:14 | 24/05/2026, 10:37:33 | No | No | - | - | 16/05/2026, 22:57:20 | - | |
| 161.35.213.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 21:32:14 | 07/06/2026, 01:06:17 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 22/05/2026, 22:57:23 | - |
| 13.231.164.•••:106 | - | 🇯🇵 Japan | Yes | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Web Services Japan | 22/05/2026, 20:59:46 | 07/06/2026, 00:34:01 | No | No | - | CVE-2025-14177, CVE-2025-14178, CVE-2025-14180, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-66200 | 22/05/2026, 21:03:54 | - |
| 124.223.92.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 20:55:51 | 26/05/2026, 14:52:49 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385 | 23/05/2026, 04:01:36 | tencent.com |
| 158.220.127.•••:18789 | - | 🇩🇪 Germany | Yes | true | Leaked | AS51167 | Contabo GmbH | Contabo | 22/05/2026, 20:55:50 | 04/06/2026, 20:18:59 | Yes | Yes | APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2006-20001, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:10:49 | contaboserver.net, contabo.de, contabo.net |
| 154.203.107.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 20:55:48 | 07/06/2026, 01:11:18 | No | - | - | - | 17/05/2026, 04:45:11 | - |
| 209.38.255.•••:443 | - | 🇩🇪 Germany | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 20:55:47 | 06/06/2026, 07:39:41 | No | No | - | - | 17/05/2026, 04:50:00 | - |
| 98.80.6.•••:18789 | Assistant | 🇺🇸 United States | Yes | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 22/05/2026, 20:55:47 | 04/06/2026, 14:22:49 | No | No | - | - | 17/05/2026, 04:50:01 | - |
| 96.45.187.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS25820 | IT7 Networks Inc | IT7 Networks | 22/05/2026, 20:55:47 | 04/06/2026, 22:26:32 | Yes | No | - | - | 04/06/2026, 16:32:30 | 16clouds.com |
| 82.156.124.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 20:55:47 | 05/06/2026, 11:50:23 | - | - | - | - | - | - |
| 186.240.116.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | HK Powerline | 22/05/2026, 20:55:47 | 07/06/2026, 01:11:32 | No | No | - | - | 17/05/2026, 04:50:06 | - |
| 156.247.110.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Octopus Web Solution Inc | 22/05/2026, 20:55:47 | 04/06/2026, 03:01:22 | No | No | - | CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 04:50:07 | - |
| 2a09:8280:1::e7:c7e7:0:80 | - | 🇺🇸 United States | - | true | Clean | AS40509 | Fly.io, Inc. | Fly.io | 22/05/2026, 20:55:47 | 06/06/2026, 23:06:09 | - | - | - | - | - | - |
| 175.178.114.•••:18888 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud | 22/05/2026, 20:55:47 | 06/06/2026, 17:28:33 | Yes | Yes | APT37, El-Machete | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 23/05/2026, 04:50:09 | tencent.com |
| 154.203.120.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 20:55:47 | 05/06/2026, 14:40:56 | No | - | - | - | 17/05/2026, 04:53:49 | - |
| 2a02:4780:4:fb94::1:18789 | - | 🇺🇸 United States | - | false | Clean | AS47583 | Hostinger International Limited | Hostinger | 22/05/2026, 20:55:47 | 25/05/2026, 17:49:40 | - | - | - | - | - | - |
| 186.240.25.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | HK Powerline | 22/05/2026, 20:55:46 | 01/06/2026, 05:34:08 | - | - | - | - | - | - |
| 47.253.229.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud US | 22/05/2026, 20:55:46 | 07/06/2026, 01:11:19 | No | No | - | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:53:55 | - |
| 47.111.136.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 20:55:46 | 06/06/2026, 04:51:00 | No | No | - | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 04:53:57 | - |
| 8.219.169.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Singapore | 22/05/2026, 20:55:46 | 07/06/2026, 01:11:38 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:53:58 | - |
| 2409:8a20:883:f900::e70:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS56046 | China Mobile communications corporation | China Mobile | 22/05/2026, 20:55:46 | 04/06/2026, 10:51:03 | - | - | - | - | - | - |
| 38.6.0.•••:443 | - | 🇯🇵 Japan | Yes | false | Clean | AS398993 | PEG TECH INC | Polyethylene Glycol-Lipid Association | 22/05/2026, 20:55:46 | 29/05/2026, 06:29:37 | No | No | - | - | 17/05/2026, 04:54:01 | - |
| 121.89.89.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 20:55:46 | 06/06/2026, 23:48:22 | Yes | No | - | CVE-2007-4559, CVE-2013-0340, CVE-2016-20012, CVE-2018-20406, CVE-2018-20852, CVE-2019-10160, CVE-2019-15903, CVE-2019-16056, CVE-2019-16905, CVE-2019-16935, CVE-2019-18348, CVE-2019-20907, CVE-2019-5010, CVE-2019-9636, CVE-2019-9674, CVE-2019-9740, CVE-2019-9947, CVE-2019-9948, CVE-2020-14145, CVE-2020-14422, CVE-2020-15523, CVE-2020-15778, CVE-2020-26116, CVE-2020-27619, CVE-2020-8315, CVE-2020-8492, CVE-2021-23336, CVE-2021-28861, CVE-2021-3177, CVE-2021-3426, CVE-2021-36368, CVE-2021-3733, CVE-2021-3737, CVE-2021-41617, CVE-2021-4189, CVE-2022-0391, CVE-2022-26488, CVE-2022-37454, CVE-2022-45061, CVE-2022-48560, CVE-2022-48564, CVE-2022-48565, CVE-2022-48566, CVE-2023-24329, CVE-2023-27043, CVE-2023-36632, CVE-2023-38408, CVE-2023-40217, CVE-2023-48795, CVE-2023-51385, CVE-2024-0397, CVE-2024-11168, CVE-2024-3219, CVE-2024-4032, CVE-2024-5642, CVE-2024-6232, CVE-2024-6923, CVE-2024-7592, CVE-2024-8088, CVE-2024-9287, CVE-2025-12084, CVE-2025-12781, CVE-2025-13836, CVE-2025-13837, CVE-2025-26465, CVE-2025-32728, CVE-2025-6075, CVE-2025-61984, CVE-2025-61985, CVE-2026-4519 | 23/05/2026, 04:54:03 | aliyun.com |
| 38.76.190.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Leaked | AS401701 | cognetcloud INC | Hong Kong Cloud Network Technology Co Ltd | 22/05/2026, 20:55:46 | 06/06/2026, 18:52:59 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 03/06/2026, 20:36:41 | cogentco.com |
| 154.203.125.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 20:55:46 | 04/06/2026, 03:44:03 | No | - | - | - | 17/05/2026, 04:54:07 | - |
| 39.96.196.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 20:55:46 | 06/06/2026, 20:17:02 | Yes | No | - | - | 23/05/2026, 04:54:08 | aliyun.com |
| 47.108.20.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 20:55:46 | 05/06/2026, 01:15:28 | - | - | - | - | - | - |
| 183.185.22.•••:18789 | - | 🇨🇳 China mainland | Yes | false | Clean | AS4837 | CHINA UNICOM China169 Backbone | sxty-gkj-BAS | 22/05/2026, 20:55:46 | 23/05/2026, 05:20:36 | - | - | - | - | - | - |
| 185.209.179.•••:13000 | - | 🇺🇸 United States | Yes | true | Leaked | AS396356 | Latitude.sh | Latitude | 22/05/2026, 20:55:46 | 05/06/2026, 02:40:10 | Yes | Yes | APT17, APT36, APT37, APT45, CloudSorcerer, Daggerfly APT, Kimsuky, MuddyWater Group, SideWinder APT, The Shadow Brokers | CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 04:54:14 | maxihost.com.br, latitude.sh |
| 47.74.18.•••:18789 | - | 🇯🇵 Japan | Yes | true | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Japan | 22/05/2026, 20:55:46 | 04/06/2026, 20:19:05 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-31122, CVE-2023-3823, CVE-2023-3824, CVE-2023-38408, CVE-2023-38709, CVE-2023-43622, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-11233, CVE-2024-11234, CVE-2024-11236, CVE-2024-1874, CVE-2024-2408, CVE-2024-24795, CVE-2024-27316, CVE-2024-2756, CVE-2024-3096, CVE-2024-36387, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-4577, CVE-2024-47252, CVE-2024-5458, CVE-2024-5585, CVE-2024-8929, CVE-2024-8932, CVE-2025-1220, CVE-2025-14177, CVE-2025-14178, CVE-2025-14180, CVE-2025-1735, CVE-2025-23048, CVE-2025-26465, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-61984, CVE-2025-61985, CVE-2025-6491, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:54:15 | - |
| 8.219.112.•••:443 | - | 🇸🇬 Singapore | Yes | false | Clean | AS45102 | Alibaba (US) Technology Co., Ltd. | Alibaba Cloud Singapore | 22/05/2026, 20:55:46 | 23/05/2026, 05:20:36 | No | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:54:18 | - |
| 129.121.96.•••:80 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | OGTIPS1 | 22/05/2026, 20:55:46 | 04/06/2026, 15:48:09 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:54:19 | athenixinc.com, hostmonster.com, site5.com, domain.com, readyhosting.com, homestead.com, endurance.com, mojomarketplace.com, mybluehost.me, dotster.com, bluehost.com |
| 45.207.242.•••:443 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS54801 | Zillion Network Inc. | Zillion Network Inc. | 22/05/2026, 20:55:46 | 06/06/2026, 07:39:43 | No | Yes | APT1, APT32, APT37, APT38, DragonFly, El-Machete, FIN8, Gamaredon-Group, Packrat, gozi | CVE-2011-2262, CVE-2012-0075, CVE-2012-0112, CVE-2012-0113, CVE-2012-0114, CVE-2012-0115, CVE-2012-0116, CVE-2012-0118, CVE-2012-0119, CVE-2012-0120, CVE-2012-0484, CVE-2012-0485, CVE-2012-0490, CVE-2012-0492, CVE-2012-0540, CVE-2012-0553, CVE-2012-0572, CVE-2012-0574, CVE-2012-0583, CVE-2012-0882, CVE-2012-1688, CVE-2012-1689, CVE-2012-1690, CVE-2012-1696, CVE-2012-1697, CVE-2012-1702, CVE-2012-1703, CVE-2012-1705, CVE-2012-1734, CVE-2012-2102, CVE-2012-2749, CVE-2012-3150, CVE-2012-3158, CVE-2012-3163, CVE-2012-3173, CVE-2012-3180, CVE-2012-3197, CVE-2012-5060, CVE-2013-0383, CVE-2013-0384, CVE-2013-0385, CVE-2013-0389, CVE-2013-1492, CVE-2013-1506, CVE-2013-1521, CVE-2013-1552, CVE-2013-1555, CVE-2013-2378, CVE-2013-2389, CVE-2013-2391, CVE-2013-2392, CVE-2013-3802, CVE-2013-3804, CVE-2013-3808, CVE-2013-5908, CVE-2014-0386, CVE-2014-0393, CVE-2014-0401, CVE-2014-0402, CVE-2014-0412, CVE-2014-0437, CVE-2014-4078, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 04:54:21 | - |
| 38.6.0.•••:18789 | - | 🇯🇵 Japan | Yes | false | Clean | AS398993 | PEG TECH INC | Polyethylene Glycol-Lipid Association | 22/05/2026, 20:55:46 | 29/05/2026, 01:33:16 | No | Yes | APT28, APT35, APT37, APT39, APT41, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2014-1692, CVE-2014-2532, CVE-2014-2653, CVE-2015-5352, CVE-2015-5600, CVE-2015-6563, CVE-2015-6564, CVE-2016-0777, CVE-2016-0778, CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 23/05/2026, 04:54:23 | - |
| 154.203.109.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 20:55:46 | 04/06/2026, 23:50:53 | No | No | - | - | 17/05/2026, 04:54:25 | - |
| 211.101.246.•••:18789 | - | 🇽🇽 XX | Yes | true | Leaked | AS58519 | Cloud Computing Corporation | Unknown | 22/05/2026, 20:55:46 | 05/06/2026, 12:33:00 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:54:26 | cnnic.cn |
| 82.156.102.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 20:55:46 | 06/06/2026, 16:46:37 | - | - | - | - | - | - |
| 204.48.25.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 22/05/2026, 20:55:46 | 06/06/2026, 11:10:21 | No | Yes | APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2016-20012, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:54:30 | - |
| 54.78.210.•••:443 | - | 🇮🇪 Ireland | Yes | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services Ireland | 22/05/2026, 20:55:45 | 07/06/2026, 01:11:24 | No | - | - | CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-7347, CVE-2025-23419 | 23/05/2026, 04:54:32 | - |
| 47.92.235.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 20:55:45 | 03/06/2026, 20:34:25 | No | Yes | APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 23/05/2026, 04:58:27 | - |
| 154.203.108.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS9294 | GNET INC. | Cloud Innovation | 22/05/2026, 20:55:45 | 04/06/2026, 12:15:30 | No | - | - | - | 17/05/2026, 05:22:43 | - |
| 152.136.38.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 22/05/2026, 20:55:45 | 06/06/2026, 17:28:36 | No | No | - | - | 17/05/2026, 05:22:44 | - |
| 39.98.199.•••:50001 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 22/05/2026, 20:55:45 | 07/06/2026, 01:11:29 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon | CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385 | 23/05/2026, 04:58:29 | aliyun.com |
| 2.26.5.•••:8443 | - | 🇵🇱 Poland | Yes | true | Clean | AS203154 | MITELIS SECURITY LIMITED | Play2Go | 22/05/2026, 20:55:45 | 31/05/2026, 19:00:10 | No | No | - | - | 17/05/2026, 04:58:31 | - |
| 186.240.24.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | HK Powerline | 22/05/2026, 20:55:45 | 31/05/2026, 22:30:35 | - | - | - | - | - | - |
| 2a02:c207:2323:6939::1:443 | - | 🇫🇷 France | - | true | Clean | AS51167 | Contabo GmbH | Contabo | 22/05/2026, 20:55:45 | 04/06/2026, 13:40:18 | - | - | - | - | - | - |
| 2409:8a56:3529:8600::1:8880 | - | 🇨🇳 China mainland | - | false | Clean | AS56040 | China Mobile communications corporation | China Mobile | 22/05/2026, 20:55:45 | 23/05/2026, 05:20:35 | - | - | - | - | - | - |
| 172.245.114.•••:81 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | RackNerd | 22/05/2026, 20:55:45 | 06/06/2026, 12:34:06 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team | CVE-2014-4078, CVE-2015-5352, CVE-2015-5600, CVE-2015-6563, CVE-2015-6564, CVE-2016-10002, CVE-2016-10003, CVE-2018-1000024, CVE-2018-1000027, CVE-2018-15919, CVE-2018-19131, CVE-2018-19132, CVE-2019-12519, CVE-2019-12520, CVE-2019-12521, CVE-2019-12522, CVE-2019-12523, CVE-2019-12524, CVE-2019-12525, CVE-2019-12526, CVE-2019-12528, CVE-2019-12529, CVE-2019-13345, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-18860, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15810, CVE-2020-15811, CVE-2020-24606, CVE-2020-25097, CVE-2020-8449, CVE-2020-8450, CVE-2020-8517, CVE-2021-28116, CVE-2021-28651, CVE-2021-28652, CVE-2021-31806, CVE-2021-31807, CVE-2021-31808, CVE-2021-33620, CVE-2021-41617, CVE-2021-46784, CVE-2022-41318, CVE-2023-46724, CVE-2023-46728, CVE-2023-46846, CVE-2023-46847, CVE-2023-49285, CVE-2023-49286, CVE-2023-49288, CVE-2023-50269, CVE-2023-5824, CVE-2024-25617, CVE-2024-33427, CVE-2024-37894 | 23/05/2026, 04:58:35 | racknerd.com |
| 43.130.15.•••:80 | - | 🇸🇬 Singapore | Yes | false | Leaked | AS132203 | Tencent Building, Kejizhongyi Avenue | 6 Collyer Quay | 22/05/2026, 20:55:45 | 23/05/2026, 05:20:35 | Yes | Yes | APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 23/05/2026, 04:58:36 | tencent.com |
| 34.87.50.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS396982 | Google LLC | 22/05/2026, 20:55:45 | 04/06/2026, 21:01:53 | No | - | - | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617 | 23/05/2026, 04:58:38 | - | |
| 8.133.167.•••:18789 | - | 🇸🇬 Singapore | Yes | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alibaba Cloud | 22/05/2026, 20:55:45 | 06/06/2026, 17:28:33 | - | - | - | - | - | - |
| 116.132.0.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS4837 | CHINA UNICOM China169 Backbone | China Unicom | 22/05/2026, 20:55:45 | 05/06/2026, 00:33:00 | Yes | Yes | APT-C-23, APT36, Cobalt Group, Equation Group, Gamaredon Group, Ghostwriter, Lazarus Group, Turla APT Group, Volt Typhoon | CVE-2020-11724, CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-31122, CVE-2023-43622, CVE-2023-44487, CVE-2023-45802, CVE-2024-36387, CVE-2024-37887, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-52513, CVE-2024-52515, CVE-2024-52516, CVE-2024-52517, CVE-2024-52518, CVE-2024-52519, CVE-2024-52520, CVE-2024-52521, CVE-2024-52523, CVE-2024-52525, CVE-2024-7347, CVE-2025-23048, CVE-2025-23419, CVE-2025-47790, CVE-2025-47791, CVE-2025-47793, CVE-2025-47794, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, CVE-2025-66200, CVE-2025-66510 | 23/05/2026, 04:58:41 | chinaunicom.cn |