🦞 OpenClaw Exposure Watchboard

This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.

Exposed Instances: 816988 Page: 7838 / 8170 (100 per page) Showing: 783701-783800 Last Imported: 30/04/2026, 13:26:03
Build With Vivgrid

Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com

Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.

Explore Vivgrid
Showing page 7838 of 8170
Endpoint Assistant Name Country auth_requiredis_activehas_leaked_credsasnasn_nameorgfirst_seenlast_seenasi_has_breachasi_has_threat_actorasi_threat_actorsasi_cvesasi_enriched_atasi_domains
140.245.15.•••:18789 Assistant 🇺🇸 United States - false Leaked AS31898Oracle CorporationOracle03/02/2026, 22:36:5406/02/2026, 16:54:13 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 13:40:54healtheintent.com, purewellness.com, cerner.ae, retek.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com
47.254.78.•••:18789 - 🇺🇸 United States - false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud US03/02/2026, 22:36:5405/02/2026, 02:14:40 No No --04/02/2026, 21:16:41-
43.139.229.•••:18789 bluebot (🤖) 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing03/02/2026, 22:36:5427/02/2026, 09:50:41 Yes No -CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 23:23:25tencent.com
141.148.215.•••:18789 - 🇺🇸 United States - false Leaked AS31898Oracle CorporationOracle03/02/2026, 22:36:5404/02/2026, 12:45:11 Yes No --06/02/2026, 12:59:51healtheintent.com, purewellness.com, retek.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oraclecloudservices.com, rsys2.net, hyperroll.com, orcale.com, oraclemobile.com, sun.co.in, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, oracleemaildelivery.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, skire.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, optika.com, jcp.org, smed.com, cernerenviza-tw.com, recruitmax.com, decisioneering.com, stortek.com, seebeyond.com, livelook.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com
43.162.107.•••:18789 Assistant 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5402/03/2026, 12:22:39 Yes No -CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198504/02/2026, 22:53:44tencent.com
111.229.68.•••:18789 悟空 (🐒) 🇨🇳 China mainland - false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5406/02/2026, 05:14:15 Yes Yes APT37, El-Machete-04/02/2026, 21:15:13tencent.com, chinamobile.com, chinamobile.cn
49.51.70.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueTencent Cloud03/02/2026, 22:36:5401/03/2026, 05:57:53 Yes Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:06:37truecorp.co.th, tencent.com
194.62.52.•••:18789 Yaver (/avatar/main) 🇹🇷 Türkiye Yes false Clean AS204876BGZ BILISIM TEKNOLOJILERI LIMITED SIRKETIBGZBILISIM03/02/2026, 22:36:5417/04/2026, 22:24:42 No Yes APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-4161705/02/2026, 11:30:04-
106.54.231.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5416/04/2026, 01:18:37 Yes - --06/02/2026, 02:05:40bj189.cn, tencent.com
74.48.10.•••:18789 Assistant 🇺🇸 United States Yes false Clean AS35916MULTACOM CORPORATIONMultacom Corporation03/02/2026, 22:36:5417/04/2026, 10:01:46 Yes Yes APT15, APT28, APT31, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APTCVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-61984, CVE-2025-6198506/02/2026, 01:55:05multacom.com
175.178.79.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5418/03/2026, 08:58:47 Yes Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-5138506/02/2026, 01:42:04tencent.com, ub.ac.id
152.32.226.•••:18789 leebot 🇭🇰 Hong Kong Yes false Clean AS135377UCLOUD INFORMATION TECHNOLOGY (HK) LIMITEDUcloud Information Technology HK03/02/2026, 22:36:5402/03/2026, 01:15:12 No Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 02:33:30-
188.132.152.•••:18789 - 🇹🇷 Türkiye - false Clean AS48678PENTECH BILISIM TEKNOLOJILERI SANAYI VE TICARET LIMITED SIRKETiPentech Bilisim Teknolojileri03/02/2026, 22:36:5406/04/2026, 05:09:34 No No --05/02/2026, 03:53:06-
34.55.24.•••:18789 - 🇺🇸 United States - false Clean AS396982Google LLCGoogle03/02/2026, 22:36:5404/02/2026, 12:45:11 No Yes Salt TyphoonCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-3272806/02/2026, 12:59:52-
119.28.157.•••:18789 Samuel ((待定)) 🇰🇷 South Korea Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueTencent Cloud03/02/2026, 22:36:5417/04/2026, 20:54:00 Yes Yes APT37, El-Machete, Packrat-05/02/2026, 03:06:29tencent.com
62.171.172.•••:18789 - 🇫🇷 France Yes false Leaked AS51167Contabo GmbHContabo03/02/2026, 22:36:5416/04/2026, 17:28:19 Yes Yes APT15, APT28, APT29, APT31, APT34, APT36, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2020-13934, CVE-2020-13935, CVE-2020-13943, CVE-2020-17527, CVE-2020-9484, CVE-2021-24122, CVE-2021-25122, CVE-2021-25329, CVE-2021-30640, CVE-2021-33037, CVE-2021-41079, CVE-2021-43980, CVE-2022-23181, CVE-2022-25762, CVE-2022-29885, CVE-2022-34305, CVE-2022-42252, CVE-2023-28531, CVE-2023-28708, CVE-2023-38408, CVE-2023-41080, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 06:04:06contaboserver.net, contabo.de, contabo.net
106.52.124.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5416/04/2026, 12:10:29 Yes Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-5138505/02/2026, 19:04:03bj189.cn, tencent.com
165.245.142.•••:18789 Max 🇺🇸 United States Yes false Clean AS14061DigitalOcean, LLCDigitalOcean03/02/2026, 22:36:5413/04/2026, 05:32:17 - - --06/02/2026, 01:46:23-
8.135.41.•••:18789 - 🇸🇬 Singapore - false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud03/02/2026, 22:36:5404/02/2026, 12:45:11 No Yes APT-C-23, APT-C-50, APT28, APT35, APT40, APT41, Cobalt Group, Domestic Kitten, Donot Team, Earth Berberoka, Energetic Bear, Equation Group, Hafnium Group, Lazarus Group, Leafminer, Luckycat APT, MuddyWater Group, Sandworm Team, TA428, Volt TyphoonCVE-2006-7243, CVE-2009-4418, CVE-2010-1899, CVE-2010-2730, CVE-2010-3972, CVE-2010-4409, CVE-2010-4657, CVE-2010-4699, CVE-2011-0421, CVE-2011-0708, CVE-2011-0753, CVE-2011-0754, CVE-2011-0755, CVE-2011-1092, CVE-2011-1148, CVE-2011-1153, CVE-2011-1398, CVE-2011-1464, CVE-2011-1466, CVE-2011-1467, CVE-2011-1468, CVE-2011-1469, CVE-2011-1470, CVE-2011-1939, CVE-2011-2202, CVE-2011-2483, CVE-2011-3182, CVE-2011-3267, CVE-2011-3268, CVE-2011-4718, CVE-2011-4885, CVE-2012-0057, CVE-2012-0788, CVE-2012-0789, CVE-2012-0831, CVE-2012-1171, CVE-2012-1172, CVE-2012-1823, CVE-2012-2143, CVE-2012-2311, CVE-2012-2336, CVE-2012-2376, CVE-2012-2386, CVE-2012-2688, CVE-2012-3365, CVE-2012-3450, CVE-2013-1635, CVE-2013-1643, CVE-2013-1824, CVE-2013-2110, CVE-2013-3735, CVE-2013-4248, CVE-2013-4635, CVE-2013-6420, CVE-2013-6501, CVE-2013-6712, CVE-2013-7327, CVE-2014-0207, CVE-2014-0236, CVE-2014-0237, CVE-2014-0238, CVE-2014-2020, CVE-2014-2270, CVE-2014-2497, CVE-2014-3478, CVE-2014-3479, CVE-2014-3480, CVE-2014-3487, CVE-2014-3515, CVE-2014-3587, CVE-2014-3597, CVE-2014-3668, CVE-2014-3669, CVE-2014-3670, CVE-2014-3981, CVE-2014-4670, CVE-2014-5459, CVE-2014-8142, CVE-2014-9425, CVE-2014-9426, CVE-2014-9427, CVE-2014-9652, CVE-2014-9653, CVE-2014-9705, CVE-2014-9767, CVE-2014-9912, CVE-2015-0231, CVE-2015-0232, CVE-2015-0273, CVE-2015-1351, CVE-2015-1352, CVE-2015-2331, CVE-2015-2348, CVE-2015-2783, CVE-2015-2787, CVE-2015-3307, CVE-2015-3329, CVE-2015-3330, CVE-2015-3411, CVE-2015-3412, CVE-2015-4021, CVE-2015-4022, CVE-2015-4024, CVE-2015-4025, CVE-2015-4026, CVE-2015-4116, CVE-2015-4147, CVE-2015-4148, CVE-2015-4598, CVE-2015-4599, CVE-2015-4600, CVE-2015-4601, CVE-2015-4602, CVE-2015-4603, CVE-2015-4604, CVE-2015-4605, CVE-2015-4642, CVE-2015-4643, CVE-2015-4644, CVE-2015-5589, CVE-2015-5590, CVE-2015-6831, CVE-2015-6832, CVE-2015-6833, CVE-2015-6834, CVE-2015-6835, CVE-2015-6836, CVE-2015-6837, CVE-2015-6838, CVE-2015-7803, CVE-2015-7804, CVE-2015-8835, CVE-2015-8838, CVE-2015-8865, CVE-2015-8873, CVE-2015-8874, CVE-2015-8877, CVE-2015-8879, CVE-2015-8935, CVE-2015-8994, CVE-2015-9253, CVE-2016-10158, CVE-2016-10159, CVE-2016-10161, CVE-2016-10397, CVE-2016-10712, CVE-2016-1903, CVE-2016-2554, CVE-2016-3141, CVE-2016-3142, CVE-2016-3185, CVE-2016-4070, CVE-2016-4342, CVE-2016-4343, CVE-2016-4537, CVE-2016-4538, CVE-2016-4539, CVE-2016-4540, CVE-2016-4541, CVE-2016-4542, CVE-2016-4543, CVE-2016-5093, CVE-2016-5094, CVE-2016-5095, CVE-2016-5096, CVE-2016-5114, CVE-2016-5399, CVE-2016-5768, CVE-2016-5769, CVE-2016-5770, CVE-2016-5771, CVE-2016-5772, CVE-2016-5773, CVE-2016-6174, CVE-2016-6288, CVE-2016-6289, CVE-2016-6290, CVE-2016-6291, CVE-2016-6292, CVE-2016-6294, CVE-2016-6295, CVE-2016-6296, CVE-2016-6297, CVE-2016-7124, CVE-2016-7125, CVE-2016-7126, CVE-2016-7127, CVE-2016-7128, CVE-2016-7129, CVE-2016-7130, CVE-2016-7131, CVE-2016-7132, CVE-2016-7411, CVE-2016-7412, CVE-2016-7413, CVE-2016-7414, CVE-2016-7416, CVE-2016-7417, CVE-2016-7418, CVE-2016-7478, CVE-2016-9137, CVE-2016-9138, CVE-2016-9934, CVE-2016-9935, CVE-2017-11142, CVE-2017-11143, CVE-2017-11144, CVE-2017-11145, CVE-2017-11147, CVE-2017-11628, CVE-2017-12933, CVE-2017-16642, CVE-2017-7272, CVE-2017-7890, CVE-2017-7963, CVE-2017-8923, CVE-2017-9224, CVE-2017-9225, CVE-2017-9226, CVE-2017-9229, CVE-2018-10545, CVE-2018-10546, CVE-2018-10547, CVE-2018-10548, CVE-2018-10549, CVE-2018-14851, CVE-2018-14883, CVE-2018-15132, CVE-2018-17082, CVE-2018-19395, CVE-2018-19396, CVE-2018-19520, CVE-2018-20783, CVE-2018-5711, CVE-2018-5712, CVE-2018-7584, CVE-2019-6977, CVE-2019-9020, CVE-2019-9021, CVE-2019-9023, CVE-2019-9024, CVE-2019-9637, CVE-2019-9638, CVE-2019-9639, CVE-2019-9641, CVE-2022-31628, CVE-2022-31629, CVE-2024-457706/02/2026, 12:59:53-
167.99.169.•••:18789 - 🇺🇸 United States - false Clean AS14061DigitalOcean, LLCDigitalOcean03/02/2026, 22:36:5404/02/2026, 12:45:11 No No --06/02/2026, 12:59:55-
40.80.82.•••:18789 StarkLife 🇺🇸 United States Yes false Clean AS8075Microsoft CorporationMicrosoft03/02/2026, 22:36:5414/04/2026, 21:42:27 No No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 21:56:23-
34.132.253.•••:18789 Assistant 🇺🇸 United States Yes false Clean AS396982Google LLCGoogle03/02/2026, 22:36:5416/04/2026, 11:24:49 No No -CVE-2016-20012, CVE-2020-14145, CVE-2021-28041, CVE-2021-36368, CVE-2021-4161706/02/2026, 01:34:20-
8.162.0.•••:18789 Assistant 🇸🇬 Singapore Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud03/02/2026, 22:36:5406/03/2026, 17:46:43 No No --05/02/2026, 13:41:04-
157.230.234.•••:18789 COVE (Central Overwatch for Verification & Edifica (🌊) 🇺🇸 United States Yes false Clean AS14061DigitalOcean, LLCDigitalOcean03/02/2026, 22:36:5410/03/2026, 14:23:02 No Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-16843, CVE-2018-16844, CVE-2018-16845, CVE-2018-20685, CVE-2019-20372, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 10:50:36-
170.106.100.•••:18789 牛马 (Niu Ma) (/avatar/main) 🇺🇸 United States Yes false Clean AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5426/02/2026, 07:26:35 No - -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 19:03:36-
43.167.223.•••:18789 - 🇸🇬 Singapore - false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5404/02/2026, 12:45:11 Yes Yes APT15, APT17, APT31, APT36, APT37, APT45, Bitter APT, Bluenoroff, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow BrokersCVE-2019-20372, CVE-2019-9511, CVE-2019-9513, CVE-2019-9516, CVE-2021-23017, CVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 12:59:56tencent.com
159.75.203.•••:18789 Assistant 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing03/02/2026, 22:36:5415/04/2026, 12:41:30 No Yes APT37, El-Machete-05/02/2026, 23:22:49-
123.56.171.•••:18789 贾维斯 (🤠) 🇨🇳 China mainland Yes false Leaked AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft03/02/2026, 22:36:5412/02/2026, 08:10:45 Yes Yes APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm TeamCVE-2015-5352, CVE-2015-5600, CVE-2015-6563, CVE-2015-6564, CVE-2018-15919, CVE-2020-14145, CVE-2021-4161706/02/2026, 02:37:51aliyun.com
193.112.191.•••:18789 - 🇨🇳 China mainland - false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing03/02/2026, 22:36:5406/04/2026, 00:40:53 - - --06/02/2026, 12:59:58-
45.192.106.•••:18789 - 🇭🇰 Hong Kong - false Clean AS401701cognetcloud INCVapeline Technology03/02/2026, 22:36:5412/04/2026, 07:00:06 No No -CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 12:59:59-
104.21.41.•••:18789 - 🇺🇸 United States - false Leaked AS13335Cloudflare, Inc.Cloudflare03/02/2026, 22:36:5409/02/2026, 15:02:16 Yes No --06/02/2026, 13:00:00cgmprecast.com, eplaceinc.com, hzfeidi.com, fricksfashion.com, fuhuake.com, vesterbusiness.com, cityfied.net, abpincorp.com, frankfinn.com, vsmetais.com.br, jekotrade.com, hmcxjc.com, maverickinsulation.ca, shsinotech.com, vbankph.com, bopcon.com, alsuyar.net, savannah.fr, boyu-group.com, ekakitchen.com, cloudflare.net, qd-baolian.com, csofam.com, marconilearning.org, jxlingtong.com, jiabinnu.com, qzz.io, kfstock.com, reussite-personnelle.fr, chuyufood.com, lineking.ca, cloudhq-mkt6.net, forwardwirecloth.net, chubbychaser.ca, klmymmyc.com, chinasand.net, precisionalignment.ca, pp.ua, n-fusion.ca, hnbeixiang.com, refee.net, xjzljt.net, xjjingyoga.com, sxgas.net, 1haojiyin.com, wecc.org, blumshapiro.com, detongwiremesh.com, sanhoos.com, dgclh.com, bamko.net, ausarabbusinesscouncil.com, hansecontrol.com, lstcarbon.com, it.com, ttstest.com, lamaxwell.com, gaetanasnyc.com, wirelessfilmlights.com, bertservix.com.br, irrigationsystems4u.com, yhjgkeji.com, slingshot.fm, trustcc.com, china-one.net, kingdisplay.net, eu.org, bierte.com, com.de, facinghistory.org, smokymountainmachining.com, ttyt360.com, zgkaite.com, turnoutservices.com, zjdddl.com, ranscustombuilders.com, xjnmi.com, market-tech.com, oracle-ag.ch, zjhrbz.com, zhaowoo.net, bestwanhui.com, bain86.com, arbejdsdirektoratet.dk, workers.dev, arlindocastelao.com, mercsystems.ca, hashemfoods.com, siron.eu, tigerexpressfuel.com, 360-xj.com, xjwfcj.com, cdluniversity.org, wecc.biz, impresosmonterrey.com, shworldbest.com, zsnet.net, dongguansenzi.com, shadowguide.eu, china114.net, hy189.net, cattlefeeders.ca, xjhongshun.com, fdrconstruction.com, constanttech.com, equinaceaprodutosnaturais.com, dmln.net
192.241.153.•••:18789 - 🇺🇸 United States - false Clean AS14061DigitalOcean, LLCDigitalOcean03/02/2026, 22:36:5404/02/2026, 12:45:11 No Yes APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon, WIRTECVE-2006-20001, CVE-2014-2323, CVE-2014-2324, CVE-2015-3200, CVE-2015-8325, CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-20012, CVE-2016-3115, CVE-2016-6210, CVE-2016-6515, CVE-2016-8858, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-17189, CVE-2018-17199, CVE-2018-19052, CVE-2018-20685, CVE-2019-0190, CVE-2019-0196, CVE-2019-0197, CVE-2019-0211, CVE-2019-0215, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10097, CVE-2019-10098, CVE-2019-11072, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9517, CVE-2020-11984, CVE-2020-11993, CVE-2020-13938, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:02-
45.95.175.•••:18789 Assistant 🇩🇪 Germany Yes false Clean AS29066velia.net Internetdienste GmbHRacknerd03/02/2026, 22:36:5409/02/2026, 13:07:39 No Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 00:50:47-
57.128.253.•••:18789 - 🇫🇷 France - false Clean AS16276OVH SASOVH03/02/2026, 22:36:5404/02/2026, 12:45:11 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:03-
45.253.244.•••:18789 Assistant 🇭🇰 Hong Kong Yes false Clean AS17497Liasail Global Hongkong LimitedLiaSail03/02/2026, 22:36:5414/03/2026, 01:51:17 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 01:35:30-
178.128.254.•••:18789 - 🇳🇱 Netherlands Yes false Clean AS14061DigitalOcean, LLCDigitalOcean03/02/2026, 22:36:5416/04/2026, 14:26:18 No Yes APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTECVE-2006-20001, CVE-2016-20012, CVE-2018-17189, CVE-2018-17199, CVE-2019-0196, CVE-2019-0197, CVE-2019-0211, CVE-2019-0215, CVE-2019-0217, CVE-2019-0220, CVE-2019-10081, CVE-2019-10082, CVE-2019-10092, CVE-2019-10097, CVE-2019-10098, CVE-2019-16905, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-638706/02/2026, 02:32:25-
128.140.103.•••:18789 - 🇩🇪 Germany - false Leaked AS24940Hetzner Online GmbHHetzner Online03/02/2026, 22:36:5404/02/2026, 12:45:11 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:04hetzner.com
212.80.206.•••:18789 - 🇮🇱 Israel - false Clean AS44709O.M.C. COMPUTERS & COMMUNICATIONS LTDCloud Web Manage IL TA03/02/2026, 22:36:5404/02/2026, 12:45:11 No Yes APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-4161706/02/2026, 13:00:05-
43.138.160.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing03/02/2026, 22:36:5402/03/2026, 00:30:41 Yes Yes APT15, APT28, APT29, APT31, APT34, APT37, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-31122, CVE-2023-38408, CVE-2023-43622, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24989, CVE-2024-2499006/02/2026, 01:43:57tencent.com
43.135.138.•••:18789 Assistant 🇺🇸 United States Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5417/04/2026, 19:23:31 Yes No -CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 01:43:47tencent.com
134.199.164.•••:18789 - 🇦🇺 Australia - false Clean AS14061DigitalOcean, LLCDigitalOcean03/02/2026, 22:36:5404/02/2026, 19:29:54 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 12:15:03-
114.132.79.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5402/03/2026, 18:20:24 Yes Yes APT37, El-MacheteCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 21:56:49tencent.com
124.221.42.•••:18789 钢蛋 (🔩) 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5407/02/2026, 22:29:54 Yes Yes APT37, El-Machete-06/02/2026, 00:50:41tencent.com, chinaunicom.cn
5.231.106.•••:18789 Assistant 🇩🇪 Germany Yes false Clean AS213495SERVITRO LTDServitro03/02/2026, 22:36:5402/03/2026, 04:13:35 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:39:48-
47.237.72.•••:18789 - 🇨🇳 China mainland - false Leaked AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud03/02/2026, 22:36:5404/02/2026, 12:45:11 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:08hichina.com, alibaba-inc.com
46.225.60.•••:18789 - 🇩🇪 Germany Yes false Clean AS24940Hetzner Online GmbHHetzner03/02/2026, 22:36:5418/04/2026, 00:38:51 No No --06/02/2026, 00:08:16-
47.97.79.•••:18789 小黄毛 (/avatar/main) 🇨🇳 China mainland Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alisoft03/02/2026, 22:36:5426/03/2026, 20:39:13 No Yes APT28, APT41, Equation GroupCVE-2010-4478, CVE-2010-5107, CVE-2011-4327, CVE-2011-5000, CVE-2012-0814, CVE-2016-0777, CVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 01:54:18-
120.48.21.•••:18789 Li的小虾 (🦊) 🇺🇸 United States Yes false Leaked AS38365Beijing Baidu Netcom Science and Technology Co., Ltd.Baidu03/02/2026, 22:36:5402/03/2026, 10:53:47 Yes Yes APT17, APT28, APT35, APT37, APT39, Cobalt Group, DragonFly, El-Machete, Gozi, Kimsuky, Mustang Panda, Packrat, Sandworm Team, The Shadow BrokersCVE-2015-8325, CVE-2015-8879, CVE-2015-8994, CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-3115, CVE-2016-5385, CVE-2016-6207, CVE-2016-6210, CVE-2016-6515, CVE-2016-8858, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-19520, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11724, CVE-2020-14145, CVE-2021-41617, CVE-2023-29323, CVE-2023-3578406/02/2026, 13:00:09chinamobile.com, chinamobile.cn, baidu.com
1.15.101.•••:18789 - 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5402/03/2026, 10:09:20 Yes Yes APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2007-3854, CVE-2007-3863, CVE-2007-5520, CVE-2008-0340, CVE-2008-0343, CVE-2008-0344, CVE-2008-0345, CVE-2008-0346, CVE-2008-0347, CVE-2008-0348, CVE-2008-0349, CVE-2008-4014, CVE-2008-7236, CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 21:57:57tencent.com, tot.co.th
43.156.76.•••:18789 - 🇸🇬 Singapore - false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5404/02/2026, 12:45:11 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2020-8616, CVE-2020-8617, CVE-2020-8618, CVE-2020-8619, CVE-2020-8620, CVE-2020-8621, CVE-2020-8622, CVE-2020-8623, CVE-2020-8624, CVE-2020-8625, CVE-2021-25214, CVE-2021-25215, CVE-2021-25216, CVE-2021-25219, CVE-2021-25220, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2022-2795, CVE-2022-3094, CVE-2022-38177, CVE-2022-38178, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:10tencent.com
47.87.70.•••:18789 - 🇨🇳 China mainland - false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud03/02/2026, 22:36:5404/02/2026, 12:45:11 - - --06/02/2026, 13:00:11-
82.157.0.•••:18789 Assistant 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing03/02/2026, 22:36:5417/04/2026, 10:02:22 No Yes APT36, APT37, Cobalt Group, El-Machete, Equation Group, Sea Turtle GroupCVE-2016-0762, CVE-2016-3092, CVE-2016-5018, CVE-2016-5388, CVE-2016-6794, CVE-2016-6796, CVE-2016-6797, CVE-2016-6816, CVE-2016-8735, CVE-2016-8745, CVE-2017-12617, CVE-2017-5647, CVE-2017-5648, CVE-2017-5664, CVE-2017-7674, CVE-2018-1304, CVE-2018-1305, CVE-2018-1336, CVE-2018-8014, CVE-2018-8034, CVE-2021-42340, CVE-2021-43980, CVE-2022-23181, CVE-2022-25762, CVE-2022-29885, CVE-2022-34305, CVE-2022-4225206/02/2026, 01:29:51-
149.90.68.•••:18789 - 🇵🇹 Portugal - false Clean AS12353Vodafone PortugalVodafone Portugal03/02/2026, 22:36:5404/02/2026, 20:43:15 Yes No -CVE-2005-0004, CVE-2012-0540, CVE-2012-0572, CVE-2012-0574, CVE-2012-0578, CVE-2012-1688, CVE-2012-1689, CVE-2012-1690, CVE-2012-1697, CVE-2012-1702, CVE-2012-1703, CVE-2012-1705, CVE-2012-1734, CVE-2012-1735, CVE-2012-1756, CVE-2012-1757, CVE-2012-2750, CVE-2012-3150, CVE-2012-3158, CVE-2012-3160, CVE-2012-3163, CVE-2012-3166, CVE-2012-3167, CVE-2012-3173, CVE-2012-3177, CVE-2012-3180, CVE-2012-3197, CVE-2012-5060, CVE-2012-5096, CVE-2012-5612, CVE-2012-5614, CVE-2012-5627, CVE-2013-0367, CVE-2013-0368, CVE-2013-0371, CVE-2013-0383, CVE-2013-0384, CVE-2013-0385, CVE-2013-0386, CVE-2013-0389, CVE-2013-1502, CVE-2013-1506, CVE-2013-1511, CVE-2013-1512, CVE-2013-1521, CVE-2013-1523, CVE-2013-1526, CVE-2013-1531, CVE-2013-1532, CVE-2013-1544, CVE-2013-1548, CVE-2013-1552, CVE-2013-1555, CVE-2013-1861, CVE-2013-2375, CVE-2013-2376, CVE-2013-2378, CVE-2013-2389, CVE-2013-2391, CVE-2013-2392, CVE-2013-3783, CVE-2013-3793, CVE-2013-3794, CVE-2013-3801, CVE-2013-3802, CVE-2013-3804, CVE-2013-3805, CVE-2013-3808, CVE-2013-3809, CVE-2013-3812, CVE-2013-3839, CVE-2013-5807, CVE-2013-5891, CVE-2013-5908, CVE-2014-0001, CVE-2014-0384, CVE-2014-0386, CVE-2014-0393, CVE-2014-0401, CVE-2014-0402, CVE-2014-0412, CVE-2014-0420, CVE-2014-0437, CVE-2014-2419, CVE-2014-2430, CVE-2014-2431, CVE-2014-2432, CVE-2014-2436, CVE-2014-2438, CVE-2014-2440, CVE-2014-2494, CVE-2014-4207, CVE-2014-4243, CVE-2014-4258, CVE-2014-4260, CVE-2014-4274, CVE-2014-4287, CVE-2014-6463, CVE-2014-6464, CVE-2014-6469, CVE-2014-6478, CVE-2014-6484, CVE-2014-6491, CVE-2014-6494, CVE-2014-6495, CVE-2014-6496, CVE-2014-6500, CVE-2014-6505, CVE-2014-6507, CVE-2014-6520, CVE-2014-6530, CVE-2014-6551, CVE-2014-6555, CVE-2014-6559, CVE-2014-6568, CVE-2015-0374, CVE-2015-0381, CVE-2015-0382, CVE-2015-0391, CVE-2015-0411, CVE-2015-0432, CVE-2015-0433, CVE-2015-0441, CVE-2015-0499, CVE-2015-0501, CVE-2015-0505, CVE-2015-2325, CVE-2015-2568, CVE-2015-2571, CVE-2015-2573, CVE-2015-2582, CVE-2015-2620, CVE-2015-2643, CVE-2015-2648, CVE-2015-3152, CVE-2015-4752, CVE-2015-4757, CVE-2015-4792, CVE-2015-4802, CVE-2015-4807, CVE-2015-4815, CVE-2015-4816, CVE-2015-4819, CVE-2015-4826, CVE-2015-4830, CVE-2015-4836, CVE-2015-4858, CVE-2015-4861, CVE-2015-4864, CVE-2015-4870, CVE-2015-4879, CVE-2015-4913, CVE-2015-7744, CVE-2016-0502, CVE-2016-0610, CVE-2016-0616, CVE-2016-0642, CVE-2016-0651, CVE-2016-3471, CVE-2016-3492, CVE-2016-5584, CVE-2016-5612, CVE-2016-5624, CVE-2016-5626, CVE-2016-5629, CVE-2016-6664, CVE-2016-7440, CVE-2016-9843, CVE-2017-10268, CVE-2017-10378, CVE-2017-10379, CVE-2017-10384, CVE-2017-15365, CVE-2017-15945, CVE-2017-3238, CVE-2017-3243, CVE-2017-3244, CVE-2017-3258, CVE-2017-3265, CVE-2017-3291, CVE-2017-3302, CVE-2017-3308, CVE-2017-3309, CVE-2017-3312, CVE-2017-3313, CVE-2017-3317, CVE-2017-3318, CVE-2017-3453, CVE-2017-3456, CVE-2017-3464, CVE-2017-3600, CVE-2017-3636, CVE-2017-3641, CVE-2017-3651, CVE-2017-3653, CVE-2018-2562, CVE-2018-2622, CVE-2018-2640, CVE-2018-2665, CVE-2018-2668, CVE-2018-2755, CVE-2018-2761, CVE-2018-2767, CVE-2018-2771, CVE-2018-2781, CVE-2018-2813, CVE-2018-2817, CVE-2018-2819, CVE-2018-3058, CVE-2018-3063, CVE-2018-3066, CVE-2018-3081, CVE-2018-3133, CVE-2018-3174, CVE-2018-3282, CVE-2019-2455, CVE-2019-2481, CVE-2019-2503, CVE-2019-2529, CVE-2019-2614, CVE-2019-2627, CVE-2019-2737, CVE-2019-2739, CVE-2019-2740, CVE-2019-2805, CVE-2019-2974, CVE-2020-14550, CVE-2020-2574, CVE-2020-2752, CVE-2020-2780, CVE-2020-2812, CVE-2020-28912, CVE-2020-2922, CVE-2021-2007, CVE-2021-2011, CVE-2021-2144, CVE-2021-46659, CVE-2021-46666, CVE-2021-46667, CVE-2021-46669, CVE-2022-27385, CVE-2022-27449, CVE-2022-31621, CVE-2022-31622, CVE-2022-31623, CVE-2022-31624, CVE-2023-44487, CVE-2023-5157, CVE-2024-12254, CVE-2024-12718, CVE-2024-3219, CVE-2024-7347, CVE-2024-7592, CVE-2024-8088, CVE-2024-9287, CVE-2025-12084, CVE-2025-13836, CVE-2025-13837, CVE-2025-2341906/02/2026, 12:05:03duckdns.org
81.68.93.•••:18789 暖暖 (☀️) 🇨🇳 China mainland Yes false Clean AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud Computing03/02/2026, 22:36:5401/03/2026, 18:19:28 No Yes APT37, El-Machete-06/02/2026, 01:55:21-
43.134.42.•••:18789 Assistant 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi Avenue6 Collyer Quay03/02/2026, 22:36:5403/03/2026, 16:07:57 Yes Yes APT15, APT17, APT28, APT31, APT35, APT36, APT37, APT39, APT45, Bitter APT, Bluenoroff, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow BrokersCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:13tencent.com
185.200.177.•••:18789 - 🇳🇱 Netherlands - false Clean AS216154CLODO CLOUD SERVICE CO. L.L.CClodo Cloud Service03/02/2026, 22:36:5404/02/2026, 12:45:11 No Yes APT28, APT41, Equation GroupCVE-2010-4478, CVE-2010-5107, CVE-2011-4327, CVE-2011-5000, CVE-2012-0814, CVE-2016-0777, CVE-2016-10002, CVE-2018-1000024, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2020-11945, CVE-2020-14058, CVE-2020-15049, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-46784, CVE-2024-11187, CVE-2024-12705, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-3272806/02/2026, 13:00:14-
178.156.198.•••:18789 Bodeguero 🇺🇸 United States Yes false Leaked AS213230Hetzner Online GmbHHetzner03/02/2026, 22:36:5416/03/2026, 17:17:45 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198504/02/2026, 21:47:27hetzner.com
8.130.211.•••:18789 Assistant 🇸🇬 Singapore Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud03/02/2026, 22:36:5409/02/2026, 17:24:06 - - --06/02/2026, 02:31:21-
119.45.40.•••:18789 云升 (☁️) 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5412/02/2026, 07:26:57 Yes No --05/02/2026, 21:56:27tencent.com
47.253.3.•••:18789 大猫 (🐱) 🇨🇳 China mainland - false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud US03/02/2026, 22:36:5406/02/2026, 10:08:10 No Yes APT15, APT17, APT28, APT31, APT36, APT37, APT45, Bitter APT, Bluenoroff, Callisto Group, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, RomCom Group, Salt Typhoon, Sea Turtle Group, SideWinder APT, The Shadow BrokersCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-638705/02/2026, 10:03:09-
134.33.66.•••:18789 - 🇺🇸 United States - false Clean AS8075Microsoft CorporationCloud03/02/2026, 22:36:5409/02/2026, 08:02:49 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 19:03:44-
216.58.116.•••:18789 Assistant 🇨🇦 Canada Yes false Clean AS11814Distributel Communications LimitedDistributel Communications03/02/2026, 22:36:5401/03/2026, 05:58:16 No Yes Salt TyphoonCVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:39:42-
77.42.32.•••:18789 - 🇫🇮 Finland Yes false Clean AS24940Hetzner Online GmbHHetzner03/02/2026, 22:36:5416/02/2026, 22:51:05 No No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:21:30-
43.165.127.•••:18789 Assistant 🇺🇸 United States Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5428/02/2026, 23:16:34 Yes No -CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 01:47:35tencent.com
142.91.106.•••:18789 - 🇯🇵 Japan - false Clean AS134351Leaseweb Japan K.K.Leaseweb Japan03/02/2026, 22:36:5405/02/2026, 16:54:50 No No -CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 16:01:49-
110.40.130.•••:18789 - 🇨🇳 China mainland - false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5413/02/2026, 23:57:37 Yes - --06/02/2026, 01:56:28tencent.com
23.95.205.•••:18789 - 🇺🇸 United States Yes false Leaked AS36352HostPapaRackNerd03/02/2026, 22:36:5404/03/2026, 11:14:05 Yes Yes APT-C-23, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-6484, CVE-2024-6485, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:09:05racknerd.com
77.42.92.•••:18789 - 🇫🇮 Finland Yes false Clean AS24940Hetzner Online GmbHHetzner03/02/2026, 22:36:5415/04/2026, 01:30:11 - - --06/02/2026, 01:42:34-
47.90.240.•••:18789 Assistant 🇨🇳 China mainland Yes false Clean AS45102Alibaba (US) Technology Co., Ltd.Alibaba Cloud US03/02/2026, 22:36:5404/02/2026, 12:45:10 No Yes Salt TyphoonCVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:18-
51.91.156.•••:18789 - 🇫🇷 France - false Leaked AS16276OVH SASOVH03/02/2026, 22:36:5404/02/2026, 19:41:50 Yes No -CVE-2025-61984, CVE-2025-6198506/02/2026, 12:13:31ovh.net
43.162.123.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5423/02/2026, 01:45:22 Yes No -CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 01:53:53tencent.com
150.230.212.•••:18789 Assistant 🇺🇸 United States Yes false Leaked AS31898Oracle CorporationOracle03/02/2026, 22:36:5416/04/2026, 20:30:22 Yes Yes APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, DragonFly, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Packrat, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt Typhoon, goziCVE-2016-20012, CVE-2019-16905, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:19healtheintent.com, purewellness.com, cerner.ae, retek.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com
43.128.78.•••:18789 - 🇸🇬 Singapore - false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5415/02/2026, 18:22:09 Yes Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 12:34:19tencent.com
45.136.14.•••:18789 - 🇭🇰 Hong Kong Yes false Clean AS139659LUCIDACLOUD LIMITEDXnnnet Limited03/02/2026, 22:36:5416/04/2026, 14:26:06 No Yes APT28, APT35, APT36, APT37, APT39, Cobalt Group, Gamaredon Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-23017, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-44487, CVE-2024-7347, CVE-2025-2341906/02/2026, 13:00:20-
1.14.132.•••:18789 小九 (🤔) 🇨🇳 China mainland - false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5406/02/2026, 16:21:35 Yes Yes APT-C-23, APT37, El-Machete, Gamaredon Group, Ghostwriter, Lazarus Group, Turla APT Group, Volt TyphoonCVE-2021-3618, CVE-2022-41741, CVE-2022-41742, CVE-2023-4448705/02/2026, 04:34:18tencent.com, tot.co.th
45.142.177.•••:18789 OpenClaw (🤖) 🇩🇪 Germany Yes false Leaked AS197540netcup GmbHNetcup03/02/2026, 22:36:5412/02/2026, 08:54:31 Yes Yes APT-C-23, APT17, APT29, APT35, APT36, APT37, APT40, APT41, APT45, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Gamaredon Group, Ghostwriter, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt TyphoonCVE-2023-38709, CVE-2023-44487, CVE-2024-24795, CVE-2024-27316, CVE-2024-36387, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-39894, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-6387, CVE-2024-7347, CVE-2025-23048, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-61984, CVE-2025-6198506/02/2026, 02:38:00netcup.de, chickenkiller.com, us.to
128.140.39.•••:18789 Claw (🦀) 🇩🇪 Germany Yes false Leaked AS24940Hetzner Online GmbHHetzner Online03/02/2026, 22:36:5417/04/2026, 02:31:28 Yes Yes APT-C-23, APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Ghostwriter, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Turla APT Group, Volt Typhoon, WIRTECVE-2006-20001, CVE-2016-20012, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-13938, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-44487, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-6387, CVE-2024-734706/02/2026, 02:34:58hetzner.com
49.51.201.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueTencent Cloud03/02/2026, 22:36:5410/03/2026, 03:50:49 Yes Yes APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Packrat, Sandworm Team, The Shadow BrokersCVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-4161705/02/2026, 04:34:26truecorp.co.th, tencent.com
111.229.209.•••:18789 Assistant 🇨🇳 China mainland Yes false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5428/02/2026, 01:03:41 Yes Yes APT15, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, El-Machete, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-22116, CVE-2021-32718, CVE-2021-32719, CVE-2021-36368, CVE-2021-41617, CVE-2021-42340, CVE-2021-43980, CVE-2022-23181, CVE-2022-29885, CVE-2022-31008, CVE-2022-34305, CVE-2022-42252, CVE-2022-45143, CVE-2023-28708, CVE-2023-38408, CVE-2023-41080, CVE-2023-46118, CVE-2023-48795, CVE-2023-51384, CVE-2023-5138506/02/2026, 00:09:44tencent.com, chinamobile.com, chinamobile.cn
217.142.241.•••:18789 Assistant 🇺🇸 United States - false Leaked AS31898Oracle CorporationOracle Sweden03/02/2026, 22:36:5406/02/2026, 16:21:36 Yes Yes Salt TyphoonCVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-3272805/02/2026, 13:39:30healtheintent.com, purewellness.com, retek.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oraclecloudservices.com, rsys2.net, hyperroll.com, orcale.com, oraclemobile.com, sun.co.in, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, oracleemaildelivery.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, skire.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, optika.com, jcp.org, smed.com, cernerenviza-tw.com, recruitmax.com, decisioneering.com, stortek.com, seebeyond.com, livelook.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com
49.232.201.•••:18789 - 🇨🇳 China mainland - false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5404/02/2026, 12:45:10 Yes Yes APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:21truecorp.co.th, tencent.com
3.15.138.•••:18789 Nexus (🌌) 🇺🇸 United States Yes false Clean AS16509Amazon.com, Inc.Amazon03/02/2026, 22:36:5416/03/2026, 00:21:08 No No --04/02/2026, 21:47:36-
156.233.233.•••:18789 Assistant 🇺🇸 United States Yes false Clean AS401701cognetcloud INCCognetCloud03/02/2026, 22:36:5408/02/2026, 20:58:06 No Yes APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198504/02/2026, 22:55:06-
85.239.244.•••:18789 Assistant 🇩🇪 Germany Yes false Leaked AS40021Contabo Inc.Contabo03/02/2026, 22:36:5416/04/2026, 01:17:53 Yes Yes APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2016-20012, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-5138506/02/2026, 02:34:33terratransit.de, contaboserver.net, contabo.de, contabo.net
103.73.161.•••:18789 - 🇭🇰 Hong Kong - false Clean AS401696cognetcloud INCGrand Millennium Plaza03/02/2026, 22:36:5404/02/2026, 12:45:10 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:22datadock.ne.jp
49.13.239.•••:18789 Rainer (📱) 🇩🇪 Germany Yes false Leaked AS24940Hetzner Online GmbHHetzner Online03/02/2026, 22:36:5415/02/2026, 14:42:54 Yes Yes APT15, APT28, APT29, APT31, APT34, APT41, Bitter APT, Bluenoroff, Callisto Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-27151, CVE-2025-32728, CVE-2025-46686, CVE-2025-61984, CVE-2025-6198505/02/2026, 16:26:01hetzner.de, truecorp.co.th, hetzner.com
116.237.182.•••:18789 Assistant 🇨🇳 China mainland - false Leaked AS4812China Telecom (Group)ChinaNet Shanghai03/02/2026, 22:36:5406/02/2026, 03:00:15 Yes No -CVE-2025-61984, CVE-2025-6198505/02/2026, 03:06:42bj189.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, daqu.com.cn, ctyun.cn
66.33.22.•••:18789 - 🇺🇸 United States - false Leaked AS400940RailwayRailway03/02/2026, 22:36:5419/02/2026, 06:42:25 Yes No --06/02/2026, 13:00:23railway.app, altoplat.com.br, nextrental.com.br, lacthosa.com, familyfarmsllc.com, railway.com, greyleywellness.com, stranghall.com, gvcs.com, mills.com.br, americancoach.com
104.21.75.•••:18789 - 🇺🇸 United States - false Leaked AS13335Cloudflare, Inc.Cloudflare03/02/2026, 22:36:5404/02/2026, 12:45:10 Yes No --06/02/2026, 13:00:25solviarealestate.com, diamondheaddental.com, stuartsyoondds.com, yielm.com, 1-x-stavka1.ru, geyerdental.com, gracifamilydental.com, samuelhuangdental.com, drronaldli.com, liveathercules.com, assessoriagarvi.com, drboatwright.com, guiafinem.com, carsonchiropractic.com, raiolanetworks.com, sandiegodmd.com, scvascular.com, chesterfielddentalassoc.com, frontzmechanical.com, tamtampercusion.com, leggiodental.com, erdmandentalimplants.com, nita.go.ug, socialprotection.go.ug, levinefamilydentistry.com, desertridgesmiles.com, lanterndental.com, arturosanchez.com, lindsborgsmiles.com, ggperio.com, tecnicasuloa.com, serendipityshop.com, salvationarmyhouston.org, drmumford.com, lajollaendoscopy.com, garganofamilydentistry.com, sleepmanatee.net, wecamp.net, largemandental.com, lamesadental.com, hzfeidi.com, oxigendc.com, filtraglass.com, gd4kids.com, soloepis.com, gauthier-menuiserie.fr, clydencdentistry.com, estovaenserio.com, fabresa.com, chirolansing.com, cvilledds.com, georgejacobsdmd.com, printa-cal.com, creamlanddairy.com, leesburgsouthgatedental.com, lfb.com, technologybuyersguide.com, hibrids.com, hollywoodfootdoc.com, nfsgendo.com, fontainecenter.com, allfamilyshorelinedental.com, mayfairdental.com, cityfied.net, cleanteethseaside.com, walong.com, entsurgicalgroup.net, aspafone.com, gmedis.co.kr, istorsolutions.com, uniquedentalcares.com, andersonpediatricdental.com, eurospainconsulting.com, anlink.net, garzadentaltx.com, laravital.com, chebahut.com, loredohands.com, hmcxjc.com, brilliantsmilesdental.net, shsinotech.com, vbankph.com, drmiltongeivelis.com, elrafel.com, legitec.com, bopcon.com, vulcanizadosruiz.com, mountainstatevascular.com, bacalaorafols.com, naseni.gov.ng, mycambridgedentist.com, miterrydental.com, judgeyachts.com, igualiaformacion.com, crossolutions.com, clubduma.ru, oswegodentistry.com, apartamentosturisticostudela.com, viralthread.com, footandankledocsofva.com, retrievalmasters.com, fredericksburgent.com, newhopedentistry.com, yourfamilydentistaz.com, ekakitchen.com, difrenos.com, frankiesbrooklynpizza.com, ruppsstorage.com, futuresubnets.com, wisehousetech.com, dermdoctorsnva.com, lithiumconcrete.com, cloudflare.net, eustaquiocanto.com, salvationarmysouth.org, unitedpainurgentcare.com, stepforwardfootandankle.com, resistanceweldsupplies.com, grillonthehillokc.com, mynewimagedds.com, orlandchildrenscenter.com, co.com, elsoldeantequera.com, horizm.com, gpagastropractice.com, switchmanpens.com, brockorthodontics.com, periodonticimplants.com, jxlingtong.com, elreflejo.com, duplindental.com, ocgracepeds.com, sonomadermatology.com, alpinedentalnorthbend.com, bestcaredental1.com, gibbonsfootandankle.com, calsolfer.com, baselinewoods.com, wolffamilydentistry.net, lindidds.com, freeholdfamilydentistry.com, mobitzheart.com, xn--designthinkingespaa-d4b.com, rosewomenshealth.com, footandanklecg.com, alghanitex.com, qzz.io, pirineos.com, hdtech.com, paspeds.com, mobromarine.com, isthmusdental.com, stallingsdentalcare.com, motorsnaps.com, ibeslab.com, uedcl.co.ug, jfmselfstorage.com, nancyduggandds.com, thecompletefamilydentistry.com, brownsprinting.com, grupodelasheras.com, pacolopez.com, cadescovegallery.com, fanoia.com, cloudhq-mkt6.net, roshdental.com, nygastrodoctor.net, clarkstondentalgroup.com, paulhannadental.com, northscottsdalefootandanklecenter.com, forwardwirecloth.net, shrinkpeters.com, estanteriasjerez.com, atlantaskinandaesthetics.com, aligndoc.com, globalassetsolutions.com, xspotstorage.com, editorialnazari.com, residenciadeancianosensevilla.com, us.org, visionsource-dewittoptometrypc.com, njbiomaterials.org, 99ranch.com, evenlan.com, instepspecialists.net, escudodigital.com, drvahil.com, adkinsfamilydentistry.net, pp.ua, wenn.com, lifestyleblogger.com, creativesmilesaz.com, ugapost.co.ug, urbra.go.ug, freeholdboroughnj.gov, refee.net, myfreshsmiles.com, xjzljt.net, intervenia.com, belzuz.com, mercurycapitaladvisors.com, xjjingyoga.com, sxgas.net, jwvalentinedmd.com, westhartforddentalcare.com, karskidental.com, virginiacenterforwomen.com, macombcosmeticdentistry.com, ankromdental.com, markgamalindadds.com, lexvel.com, drmarinamanuntsdds.com, mudanzaspt.com, b2fs.com, dgmiberoamerica.com, talleresvillegas.com, felixcaredental.com, paradentalcare.com, annethaimd.com, chiropractorlinkstlouis.com, elitesmilesokc.com, airtronic-usa.com, thedentist4u.com, inmokeys.com, fahrneyford.com, udabryan.com, faempal.com, villagesleeplab.com, prastudies.com, tallerescodi.com, snpclasvegas.com, lasouthbaydental.com, hisgames.org, cornwallfd.com, troquelesblanes.com, www.us.com, gutterdogs.com, sanhoos.com, simatek.com, plattsburghpediatrician.com, jeffreyahlertdds.com, salinas-abogados.com, gruposolvanto.com, bamko.net, magnificofamilydentistry.com, beautifulsmilesbydrlloyd.com, norfolkfamilyandpediatricdentistry.com, cristaleriatori.com, cliftonnjdentist.net, 363pleasantstreetdental.com, campushillsdentistry.net, it.com, hvacspareparts.com, woburndentalgroup.com, leecosmeticdentistry.com, ttstest.com, termoplasticosbenicarlo.com, newhollandford.com, imperialsprinkler.com, lamaxwell.com, robertsteinbergmd.com, gaetanasnyc.com, fia.go.ug, lombardoslu.com, anamazingsmileaz.com, forresterlincoln.com, ilmascalzone.com, graph.digital, gscpa.com, smilelineclinic.com, palozolafamilydental.com, oldivydental.com, oremat.com, puyallupdds.com, grupotegnair.com, aerovertol.com, u-saveselfstorage.com, poolerpd.com, themintaz.com, umra.go.ug, warensdental.com, www.eu.com, tevimed.com, wonderfulskin.com, china-one.net, kingdisplay.net, bimelsa.com, alquilermaquinas.com, davidamurphydds.com, atlanticpietra.com, dentalartsdesign.com, tallahasseefamilydentistry.net, dentistwestfieldin.com, polikom.ru, satyadermatology.com, boozallenhamilton.com, olimdentist.com, smokymountainmachining.com, elmerhareford.com, mandarinoriental.it, phillipdondds.com, hancockalbanese.com, www.de.com, cristinaquerol.com, dentistinjonesboroar.com, nunezhandles.com, piedental.com, lenhorovitz.com, milosmedical.com, suministrosalso.com, clemsondental.com, maginus.com, barnesdennig.com, joylibros.com, plateaufoot.com, ideasbritain.com, vidrologic.com, drjamescovan.com, feyherr.com, richlandtexas.gov, killinglydentalcare.com, primecarecg.com, hometownfamilydental502.com, embutidosbierzo.com, back2back.com, lowellfamilydentalpractice.com, cansoford.ca, grupocibernos.com, belfbeckerdental.com, combinedserviceshvac.com, molinodezafra.com, innocoll.com, brinsonfordlincolnofathens.com, curvedglassxxl.com, jamesccalvindds.com, hbpodiatry.com, dvipcdn.com, cbcwaco.com, drtrudybennett.com, bentonfh.com, inmanfamilydentistryraineshart.com, ablacar.com, redmood-agency.com, parliament-osetia.ru, cvifasm.com, advancedfoottexas.com, jasondental.com, xjnmi.com, novadentist.com, ludiana.com, oracle-ag.ch, whiteoakpeds.com, iberoforwarders.com, rconecta.com, alonsoherraizprocurador.com, zhaowoo.net, elitesmilesnc.com, adlerfamilydental.com, bestirecorp.com, bentonford.com, orchidentalgroup.com, cazcarra.com, salvationarmyflorida.org, actuacee.com, bestwanhui.com, instintomoda.com, englewoodent.com, familysmilecarecenter.com, gruposdm.com, abbeyfieldstreetdentist.com, lavernedentalcenter.com, glenridgedentalarts.com, btrueb.com, newlondonchiropractor.com, millvalleydental.com, finance.go.ug, padoniadentalassociates.com, mitchelkatzmd.com, flatbyartis.com, franklinlackeedds.com, jt-md.com, stavarachefamilydental.com, perimenisdental.com, curtidosjacobogomez.com, haydelchiropractic.com, corachanmaxilofacial.com, huffandhuffdentistry.com, sankoreafrica.com, littlefieldsmiles.com, eushipments.com, kennethdpilgrimdmd.com, enanzo.com, adobegastroenterology.com, fletcherfamilydentistrysc.com, workers.dev, eastendfamilydentistry.com, hashemfoods.com, edeninternalmedicine.com, atenzza.com, calltheclinic.com, union-metal.com.hk, qualitymotorsindependence.com, patriotpreston.com, charmiesonidmd.com, talleractivo.com, sauss.net, mallyas.com, greenedentalgroup.com, todaysdental.net, irislshieldsdds.com, cloudns.net, megatecnologia.com, demetrioyjavirentacar.com, 360-xj.com, smartremsolutions.com, aicomplutense.com, thoughtbox.in, disdal.com, xjwfcj.com, co.zm, castillianfoods.com, bulverdedental.com, lakecumberlandpediatricdentistry.com, new-yorkpsychology.com, footfirstpodiatry.net, properpillow.com, normansenzakidds.com, clipart-library.com, allaboutnails.org, shenandoahdermatology.com, jefferyhurstdds.com, petdairy.com, a-com.com.au, smiles4hollywood.com, bestburiendentist.com, zsnet.net, dentiststoughton.com, mauryfamilydental.com, kentacapital.com, galiciasea.com, warrentonamazingsmile.com, carrollcountydental.com, sandhillpediatrics.com, scsatx.net, mrc.co, isobarmarketingintelligence.com, procity.com, linolakesfamilydentistry.com, china114.net, 970storage.com, eliteankleandfoot.com, bynavas.com, saifamilydentistry.com, futurefg.ru, chevychasedermatologycenter.com, hy189.net, goodingdentalhealth.com, garnetford.com, petersonandreddy.com, ecasal.com, drgilliarddmd.com, filatsserena.com, georgemalkedds.com, antaresinstrumentacion.com, rideautowndentalcare.com, xjhongshun.com, cedardentalmi.com, nissansierrapvr.com, kmurphydental.com, alquilerordenadores.com, metalicasciria.com, kampferdds.com, robertogarrudo.com, warnerrobinsfootandankle.com, dentistspa.com, asianfoodsonline.com, lyric-line.ru, gou.go.ug, geochem.org, naturalstonefromspain.com, kazemifardds.com, eastbrunswicknewimagedental.com, trespasosconsultores.com, clasenjordan.com, dmln.net
5.161.198.•••:18789 Penny (nickname: Pen) (/avatar/main) 🇺🇸 United States Yes false Leaked AS213230Hetzner Online GmbHHetzner Online03/02/2026, 22:36:5402/04/2026, 09:37:06 Yes Yes APT14, APT15, APT28, APT29, APT31, APT34, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, Volt Typhoon, WIRTECVE-2006-20001, CVE-2016-20012, CVE-2019-17567, CVE-2020-11984, CVE-2020-11993, CVE-2020-12062, CVE-2020-13950, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2020-9490, CVE-2021-26690, CVE-2021-26691, CVE-2021-28041, CVE-2021-30641, CVE-2021-33193, CVE-2021-34798, CVE-2021-36160, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44224, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:19:44hetzner.com
8.129.100.•••:18789 - 🇸🇬 Singapore Yes false Clean AS37963Hangzhou Alibaba Advertising Co.,Ltd.Alibaba Cloud03/02/2026, 22:36:5424/02/2026, 15:15:07 No No -CVE-2016-20012, CVE-2020-14145, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 03:11:38-
140.245.51.•••:18789 - 🇺🇸 United States Yes false Leaked AS31898Oracle CorporationOracle03/02/2026, 22:36:5417/04/2026, 09:17:09 Yes Yes APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, Volt TyphoonCVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 13:00:26healtheintent.com, purewellness.com, cerner.ae, retek.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com
152.53.202.•••:18789 - 🇩🇪 Germany - false Clean AS197540netcup GmbHAT ANX Holding 203/02/2026, 22:36:5409/04/2026, 15:17:48 No No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198506/02/2026, 01:41:21-
49.234.54.•••:18789 - 🇨🇳 China mainland - false Leaked AS45090Shenzhen Tencent Computer Systems Company LimitedTencent Cloud03/02/2026, 22:36:5404/02/2026, 12:45:10 Yes Yes APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow BrokersCVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-4161706/02/2026, 13:00:27truecorp.co.th, tencent.com
142.171.88.•••:18789 Assistant 🇺🇸 United States Yes false Leaked AS35916MULTACOM CORPORATIONMultacom Corporation03/02/2026, 22:36:5417/04/2026, 09:16:47 Yes Yes APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-59362, CVE-2025-61984, CVE-2025-61985, CVE-2025-6216806/02/2026, 00:08:47mytelus.com, telusassyst.com, telus.net, multacom.com, telusdigital.com, telusquebec.com, radiant.net, telus.ca, koodomobile.com, storyhive.com, telus.com, telusplanet.net, telus.digital, telus.org, telushealth.co
129.154.220.•••:18789 Assistant 🇺🇸 United States Yes false Leaked AS31898Oracle CorporationOracle03/02/2026, 22:36:5406/02/2026, 07:40:04 Yes No -CVE-2016-20012, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2020-15778, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 03:21:28healtheintent.com, purewellness.com, cerner.ae, retek.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, jdedwards.com, tiger-institute.org, zenedge.com, skire.com, sun.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com
43.153.101.•••:18789 - 🇸🇬 Singapore Yes false Leaked AS132203Tencent Building, Kejizhongyi AvenueAceville Pte Ltd03/02/2026, 22:36:5417/04/2026, 21:39:43 Yes Yes APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, El-Machete, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, The Shadow Brokers, Volt TyphoonCVE-2006-20001, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28330, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-31122, CVE-2023-38408, CVE-2023-38709, CVE-2023-45802, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-1322, CVE-2024-24795, CVE-2024-27316, CVE-2024-38472, CVE-2024-38473, CVE-2024-38474, CVE-2024-38475, CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40898, CVE-2024-42516, CVE-2024-43204, CVE-2024-43394, CVE-2024-47252, CVE-2024-6387, CVE-2025-23048, CVE-2025-26465, CVE-2025-32728, CVE-2025-49630, CVE-2025-49812, CVE-2025-53020, CVE-2025-61984, CVE-2025-6198505/02/2026, 16:56:53tencent.com
158.160.207.•••:18789 Code (или просто Код) (💻) 🇷🇺 Russia Yes false Leaked AS200350Yandex.Cloud LLCYandex Cloud03/02/2026, 22:36:5420/02/2026, 04:18:34 Yes No -CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-6198505/02/2026, 02:45:15ya.ru, compscicenter.ru, adfox.ru, preview-adfox.ru, yandex-team.ru, thequestion.ru, yandex.com, yandex.ru
89.167.13.•••:18789 - 🇫🇮 Finland Yes false Clean AS24940Hetzner Online GmbHHetzner03/02/2026, 22:36:5417/04/2026, 20:08:36 - - --05/02/2026, 05:39:37-
34.152.127.•••:18789 - 🇺🇸 United States - false Clean AS396982Google LLCGoogle03/02/2026, 22:36:5404/02/2026, 12:45:10 - - --06/02/2026, 13:00:28-