🦞 OpenClaw Exposure Watchboard
This page lists publicly reachable active OpenClaw instances for defensive awareness. If this is your deployment, enable authentication, remove direct public exposure, and patch immediately.
Exposed Instances: 958193 Page: 117 / 9582 (100 per page) Showing: 11601-11700 Last Imported: 18/06/2026, 08:26:08
🇨🇳 467,748
🇺🇸 275,667
Build With Vivgrid
Explore Vivgrid Ship Secure Enterprise AI Agents 10× Faster with vivgrid.com
Vivgrid gives you authentication, model gateway, tool control, cost tracking, and enterprise observability — everything you need to ship AI agents safely at scale.
| Endpoint | Assistant Name | Country | auth_required | is_active | has_leaked_creds | asn | asn_name | org | first_seen | last_seen | asi_has_breach | asi_has_threat_actor | asi_threat_actors | asi_cves | asi_enriched_at | asi_domains |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 43.138.249.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 14/06/2026, 00:30:50 | 17/06/2026, 15:07:18 | Yes | No | - | - | 14/06/2026, 04:05:23 | tencent.com, tencentcloud.com |
| 91.134.242.•••:18789 | - | 🇫🇷 France | - | true | Leaked | AS16276 | OVH SAS | OVH | 14/06/2026, 00:30:50 | 14/06/2026, 06:08:52 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 04:05:25 | ovh.net |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 14/06/2026, 00:30:50 | 17/06/2026, 19:23:58 | No | Yes | APT28, APT34, APT35, APT37, APT39, APT41, Bluenoroff, Cobalt Group, Gamaredon Group, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Sandworm Team, TA505, The Shadow Brokers | CVE-2013-0340, CVE-2016-0718, CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2016-4472, CVE-2016-9063, CVE-2017-15906, CVE-2017-17522, CVE-2017-18207, CVE-2017-9233, CVE-2018-1000024, CVE-2018-1060, CVE-2018-1061, CVE-2018-14647, CVE-2018-15473, CVE-2018-15919, CVE-2018-20406, CVE-2018-20685, CVE-2018-20852, CVE-2019-10160, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-15903, CVE-2019-16056, CVE-2019-16935, CVE-2019-18348, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-20907, CVE-2019-5010, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9636, CVE-2019-9740, CVE-2019-9947, CVE-2019-9948, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-14422, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2020-26116, CVE-2020-27619, CVE-2020-8315, CVE-2020-8492, CVE-2021-23336, CVE-2021-28359, CVE-2021-28651, CVE-2021-28652, CVE-2021-3177, CVE-2021-31807, CVE-2021-3426, CVE-2021-36368, CVE-2021-3733, CVE-2021-3737, CVE-2021-41617, CVE-2021-46784, CVE-2022-0391, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:05:31 | - |
| 93.127.133.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS401479 | Database Mart LLC | Database Mart LLC | 14/06/2026, 00:30:50 | 17/06/2026, 12:17:04 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:05:35 | - |
| 216.250.110.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | Silvercorp International Tower | 14/06/2026, 00:30:49 | 17/06/2026, 14:24:21 | No | - | - | - | 08/06/2026, 04:05:37 | - |
| 38.60.74.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS213840 | DDOS PROTECTION LTD / AS8796 FASTNET DATA INC | Kurun Cloud | 14/06/2026, 00:30:49 | 17/06/2026, 06:35:11 | No | - | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:05:39 | - |
| 13.246.72.•••:18789 | - | 🇿🇦 South Africa | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services | 14/06/2026, 00:30:47 | 17/06/2026, 03:39:40 | No | No | - | - | 08/06/2026, 04:05:55 | - |
| 87.106.166.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | Ionos Cloud TXL | 14/06/2026, 00:30:47 | 17/06/2026, 07:19:09 | - | - | - | - | - | - |
| 36.158.92.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS56047 | China Mobile communications corporation | China Mobile | 14/06/2026, 00:30:47 | 14/06/2026, 06:51:00 | - | - | - | - | - | - |
| 116.203.124.•••:18789 | - | 🇩🇪 Germany | Yes | true | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 14/06/2026, 00:30:47 | 17/06/2026, 08:44:50 | Yes | No | - | CVE-2023-44487, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:05:56 | hetzner.de, your-server.de |
| 23.94.180.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | HostPapa | 14/06/2026, 00:30:46 | 16/06/2026, 21:12:06 | Yes | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Berberoka, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-10708, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-14040, CVE-2018-14041, CVE-2018-14042, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2021-26690, CVE-2021-26691, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2021-46784, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2022-41317, CVE-2022-41318, CVE-2023-38408, CVE-2023-46724, CVE-2023-46728, CVE-2023-46846, CVE-2023-46847, CVE-2023-46848, CVE-2023-48795, CVE-2023-49285, CVE-2023-49286, CVE-2023-49288, CVE-2023-50269, CVE-2023-51385, CVE-2023-5824, CVE-2024-23638, CVE-2024-25111, CVE-2024-25617, CVE-2024-33427, CVE-2024-37894, CVE-2024-45802, CVE-2024-6531 | 14/06/2026, 04:06:00 | hostpapa.com |
| 117.90.230.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS4134 | Chinanet | ChinaNet Jiangsu | 14/06/2026, 00:30:46 | 14/06/2026, 06:50:59 | Yes | - | - | - | 14/06/2026, 04:06:02 | bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, ideal.sh.cn, daqu.com.cn, ctyun.cn |
| 134.185.82.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 14/06/2026, 00:30:46 | 18/06/2026, 03:54:32 | Yes | No | - | CVE-2017-8923, CVE-2022-31628, CVE-2022-31629, CVE-2022-37454, CVE-2022-4900, CVE-2024-39894, CVE-2024-5458, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 04:06:05 | netsuit.com, healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, pertmaster.com, jdedwards.com, commercialware.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 159.89.91.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 14/06/2026, 00:30:46 | 18/06/2026, 03:11:43 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728 | 14/06/2026, 04:06:06 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 14/06/2026, 00:30:46 | 18/06/2026, 05:18:53 | No | Yes | APT15, APT28, APT31, APT35, APT37, APT39, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:06:10 | - |
| 139.59.157.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 14/06/2026, 00:30:46 | 17/06/2026, 11:34:34 | No | Yes | APT41 | CVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:06:14 | - |
| 47.101.144.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 14/06/2026, 00:30:45 | 14/06/2026, 06:50:58 | - | - | - | - | - | - |
| 64.81.112.•••:18789 | - | 🇯🇵 Japan | Yes | true | Leaked | AS979 | NetLab Global | NetLab Global | 14/06/2026, 00:30:44 | 14/06/2026, 06:50:57 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 01:12:58 | dsl.net, speakeasy.net, megapath.com, gtt.net, talkingnets.com, ultradsl.net, covad.net, hiberniaatlantic.com |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 14/06/2026, 00:30:44 | 18/06/2026, 05:19:00 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-41617 | 14/06/2026, 01:13:03 | - |
| 111.255.229.•••:18789 | - | 🇹🇼 Taiwan | - | true | Leaked | AS3462 | Data Communication Business Group | Chunghwa Telecom Data Group | 14/06/2026, 00:30:44 | 14/06/2026, 06:50:56 | Yes | No | - | - | 14/06/2026, 01:13:06 | twgate.net, hinet.net, xuite.net, cht.com.tw, chttl.com.tw |
| 3.107.178.•••:18789 | - | 🇦🇺 Australia | Yes | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Corporate Services | 14/06/2026, 00:30:43 | 17/06/2026, 06:35:12 | No | No | - | - | 08/06/2026, 01:13:10 | - |
| 216.250.108.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | Silvercorp International Tower | 14/06/2026, 00:28:58 | 16/06/2026, 19:01:41 | No | No | - | - | 08/06/2026, 00:29:58 | - |
| 154.219.113.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS401701 | cognetcloud INC | Cloud Innovation | 14/06/2026, 00:28:58 | 17/06/2026, 05:03:54 | No | Yes | Packrat | - | 14/06/2026, 00:30:00 | - |
| 43.138.249.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 14/06/2026, 00:28:58 | 17/06/2026, 15:05:24 | Yes | No | - | - | 14/06/2026, 00:30:06 | tencent.com, tencentcloud.com |
| 91.134.242.•••:18789 | - | 🇫🇷 France | - | true | Leaked | AS16276 | OVH SAS | OVH | 14/06/2026, 00:28:57 | 14/06/2026, 06:07:04 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 00:30:08 | ovh.net |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 14/06/2026, 00:28:57 | 17/06/2026, 19:22:03 | No | Yes | APT28, APT34, APT35, APT37, APT39, APT41, Bluenoroff, Cobalt Group, Gamaredon Group, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Sandworm Team, TA505, The Shadow Brokers | CVE-2013-0340, CVE-2016-0718, CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2016-4472, CVE-2016-9063, CVE-2017-15906, CVE-2017-17522, CVE-2017-18207, CVE-2017-9233, CVE-2018-1000024, CVE-2018-1060, CVE-2018-1061, CVE-2018-14647, CVE-2018-15473, CVE-2018-15919, CVE-2018-20406, CVE-2018-20685, CVE-2018-20852, CVE-2019-10160, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-15903, CVE-2019-16056, CVE-2019-16935, CVE-2019-18348, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-20907, CVE-2019-5010, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2019-9636, CVE-2019-9740, CVE-2019-9947, CVE-2019-9948, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-14422, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2020-26116, CVE-2020-27619, CVE-2020-8315, CVE-2020-8492, CVE-2021-23336, CVE-2021-28359, CVE-2021-28651, CVE-2021-28652, CVE-2021-3177, CVE-2021-31807, CVE-2021-3426, CVE-2021-36368, CVE-2021-3733, CVE-2021-3737, CVE-2021-41617, CVE-2021-46784, CVE-2022-0391, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 00:30:12 | - |
| 93.127.133.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS401479 | Database Mart LLC | Database Mart LLC | 14/06/2026, 00:28:57 | 17/06/2026, 12:15:11 | No | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 00:30:15 | - |
| 216.250.110.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | Silvercorp International Tower | 14/06/2026, 00:28:57 | 17/06/2026, 14:22:23 | No | - | - | - | 08/06/2026, 00:30:17 | - |
| 38.60.74.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS213840 | DDOS PROTECTION LTD / AS8796 FASTNET DATA INC | Kurun Cloud | 14/06/2026, 00:28:57 | 17/06/2026, 06:32:51 | No | - | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 00:30:20 | - |
| 13.246.72.•••:18789 | - | 🇿🇦 South Africa | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon Data Services | 14/06/2026, 00:28:54 | 17/06/2026, 03:37:46 | No | No | - | - | 08/06/2026, 00:30:33 | - |
| 87.106.166.•••:18789 | - | 🇩🇪 Germany | - | true | Leaked | AS8560 | This is the joint network for IONOS, Fasthosts, Arsys, 1&1 Mail and Media and 1&1 Telecom. Formerly known as 1&1 Internet SE. | Ionos Cloud TXL | 14/06/2026, 00:28:54 | 17/06/2026, 07:17:17 | Yes | No | - | CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 00:30:35 | ionos.com |
| 36.158.92.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS56047 | China Mobile communications corporation | China Mobile | 14/06/2026, 00:28:54 | 14/06/2026, 06:49:04 | Yes | No | - | CVE-2018-19052, CVE-2018-25103, CVE-2019-11072, CVE-2024-3708 | 14/06/2026, 00:30:36 | chinamobile.com, chinamobile.cn |
| 116.203.124.•••:18789 | - | 🇩🇪 Germany | Yes | true | Leaked | AS24940 | Hetzner Online GmbH | Hetzner Online | 14/06/2026, 00:28:54 | 17/06/2026, 08:42:58 | Yes | No | - | CVE-2023-44487, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-23419, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 00:30:37 | hetzner.de, your-server.de |
| 23.94.180.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | HostPapa | 14/06/2026, 00:28:54 | 16/06/2026, 21:10:13 | Yes | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Berberoka, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-10708, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-14040, CVE-2018-14041, CVE-2018-14042, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-35452, CVE-2021-26690, CVE-2021-26691, CVE-2021-34798, CVE-2021-36368, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2021-46784, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-31813, CVE-2022-41317, CVE-2022-41318, CVE-2023-38408, CVE-2023-46724, CVE-2023-46728, CVE-2023-46846, CVE-2023-46847, CVE-2023-46848, CVE-2023-48795, CVE-2023-49285, CVE-2023-49286, CVE-2023-49288, CVE-2023-50269, CVE-2023-51385, CVE-2023-5824, CVE-2024-23638, CVE-2024-25111, CVE-2024-25617, CVE-2024-33427, CVE-2024-37894, CVE-2024-45802, CVE-2024-6531 | 14/06/2026, 00:30:41 | hostpapa.com |
| 117.90.230.•••:18789 | - | 🇨🇳 China mainland | - | true | Leaked | AS4134 | Chinanet | ChinaNet Jiangsu | 14/06/2026, 00:28:53 | 14/06/2026, 06:49:03 | Yes | - | - | - | 14/06/2026, 00:30:44 | bj189.cn, 118114.cn, ctwing.cn, chinatelecom.com.cn, chinatelecom.cn, new-gm.cn, 189.cn, 189free.cn, ideal.sh.cn, daqu.com.cn, ctyun.cn |
| 134.185.82.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 14/06/2026, 00:28:53 | 18/06/2026, 03:52:36 | Yes | No | - | CVE-2017-8923, CVE-2022-31628, CVE-2022-31629, CVE-2022-37454, CVE-2022-4900, CVE-2024-39894, CVE-2024-5458, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 00:30:46 | netsuit.com, healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, pertmaster.com, jdedwards.com, commercialware.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 159.89.91.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 14/06/2026, 00:28:53 | 18/06/2026, 03:09:46 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2016-20012, CVE-2020-12062, CVE-2020-14145, CVE-2020-15778, CVE-2021-28041, CVE-2021-36368, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728 | 14/06/2026, 00:30:47 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 14/06/2026, 00:28:53 | 18/06/2026, 05:17:00 | No | Yes | APT15, APT28, APT31, APT35, APT37, APT39, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 00:30:52 | - |
| 139.59.157.•••:18789 | - | 🇩🇪 Germany | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 14/06/2026, 00:28:52 | 17/06/2026, 11:32:43 | No | Yes | APT41 | CVE-2016-20012, CVE-2020-14145, CVE-2020-15778, CVE-2021-23017, CVE-2021-28041, CVE-2021-3618, CVE-2021-36368, CVE-2021-41617, CVE-2022-41741, CVE-2022-41742, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 00:30:55 | - |
| 47.101.144.•••:18789 | - | 🇨🇳 China mainland | - | true | Clean | AS37963 | Hangzhou Alibaba Advertising Co.,Ltd. | Alisoft | 14/06/2026, 00:28:52 | 14/06/2026, 06:49:02 | No | Yes | APT-C-23, APT36, Cobalt Group, Equation Group, Gamaredon Group, Ghostwriter, Hafnium Group, Lazarus Group, Turla APT Group, Volt Typhoon | CVE-2020-11996, CVE-2020-13934, CVE-2020-13935, CVE-2020-13943, CVE-2020-17527, CVE-2020-8022, CVE-2020-9484, CVE-2021-24122, CVE-2021-25122, CVE-2021-25329, CVE-2021-30640, CVE-2021-33037, CVE-2021-41079, CVE-2021-43980, CVE-2022-29885, CVE-2022-34305, CVE-2022-42252, CVE-2023-28708, CVE-2023-41080, CVE-2023-42795, CVE-2023-44487, CVE-2023-45648, CVE-2023-46589, CVE-2024-21733, CVE-2024-23672, CVE-2024-24549 | 14/06/2026, 00:30:59 | - |
| 64.81.112.•••:18789 | - | 🇯🇵 Japan | Yes | true | Leaked | AS979 | NetLab Global | NetLab Global | 14/06/2026, 00:28:51 | 14/06/2026, 06:49:01 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 00:31:04 | dsl.net, speakeasy.net, megapath.com, gtt.net, talkingnets.com, ultradsl.net, covad.net, hiberniaatlantic.com |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 14/06/2026, 00:28:51 | 18/06/2026, 05:17:07 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-41617 | 14/06/2026, 00:31:10 | - |
| 111.255.229.•••:18789 | - | 🇹🇼 Taiwan | - | true | Leaked | AS3462 | Data Communication Business Group | Chunghwa Telecom Data Group | 14/06/2026, 00:28:51 | 14/06/2026, 06:49:01 | Yes | No | - | - | 14/06/2026, 00:31:12 | twgate.net, hinet.net, xuite.net, cht.com.tw, chttl.com.tw |
| 100.24.115.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS14618 | Amazon.com, Inc. | Amazon Web Services | 14/06/2026, 00:26:56 | 15/06/2026, 18:07:16 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2015-8325, CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-3115, CVE-2016-6210, CVE-2016-6515, CVE-2016-8858, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 01:54:52 | - |
| 134.185.82.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS31898 | Oracle Corporation | Oracle | 14/06/2026, 00:26:56 | 18/06/2026, 05:15:48 | Yes | No | - | CVE-2017-8923, CVE-2022-31628, CVE-2022-31629, CVE-2022-37454, CVE-2022-4900, CVE-2024-39894, CVE-2024-5458, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 01:54:53 | netsuit.com, healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, pertmaster.com, jdedwards.com, commercialware.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 192.9.183.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS31898 | Oracle Corporation | Oracle | 14/06/2026, 00:26:56 | 15/06/2026, 18:07:16 | Yes | Yes | APT14, APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, Lazarus Group, MuddyWater Group, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2006-20001, CVE-2021-23017, CVE-2021-3618, CVE-2021-44224, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-41741, CVE-2022-41742, CVE-2023-25690, CVE-2023-27522, CVE-2023-28531, CVE-2023-38408, CVE-2023-44487, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2024-7347, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 01:54:54 | netsuit.com, healtheintent.com, purewellness.com, cerner.ae, retek.com, tryfoexnow.com, moatads.com, oraclefusion.com, connectinc.com, inquira.com, portal.com, healtheatcerner.com, oracle.com, hiedirectconnect.org, maxymiser.net, oraclecloudservices.com, rsys2.net, hyperroll.com, nor1.com, oxygen.systems, oraclegovcloud.com, orcale.com, oraclemobile.com, sun.co.in, openair.co, oraclepdemos.com, stellent.com, siebel.com, cerner.net, oracle-cloud.com, docucorp.com, mvalent.com, netsuitesuiteprojectspro.com, elementfusion.com, netsuiteforms.com, oraclecloud.com, en25.com, solaris.com, rightnowtech.com, think.com, ipapp.com, pertmaster.com, jdedwards.com, commercialware.com, tiger-institute.org, zenedge.com, skire.com, sun.com, ateam-oracle.com, sales.com, fyleio.com, push.io, estara.com, tekelec.com, textura.com, paymyhealthbill.com, dyndns.com, java.net, optika.com, jcp.org, smed.com, cernerenviza-tw.com, datafox.com, recruitmax.com, decisioneering.com, adiinsights.com, stortek.com, seebeyond.com, livelook.com, openjdk.org, virtualbox.org, dyn.com, oraclehealth.com, aimsystems.com, sunworld.com, plumtree.com, storagetek.com, oracledatacloud.com |
| 95.40.53.•••:2106 | - | 🇨🇳 China mainland | - | true | Leaked | AS16509 | Amazon.com, Inc. | Amazon Web Services Hong Kong | 13/06/2026, 23:54:40 | 18/06/2026, 05:25:06 | Yes | No | - | - | 14/06/2026, 00:00:49 | bookworm.com, lovefilm.com, shopbop.com, boxofficemojo.com, amaozn.com, com.be, amazonpay.com, amzn.asia, associates-amazon.com, endless.com, amazonaws.com, amazon.com |
| 60.184.132.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Clean | AS4134 | Chinanet | ChinaNet Lishui Node | 13/06/2026, 23:50:47 | 17/06/2026, 07:21:38 | No | No | - | - | 08/06/2026, 02:43:42 | - |
| 217.77.5.•••:20262 | - | 🇩🇪 Germany | Yes | true | Leaked | AS40021 | Contabo Inc. | Contabo | 13/06/2026, 23:50:43 | 17/06/2026, 19:26:20 | Yes | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 07:38:19 | contaboserver.net, contabo.de, contabo.net |
| 172.105.171.•••:18789 | - | 🇦🇺 Australia | Yes | true | Clean | AS63949 | Akamai Connected Cloud | Linode | 13/06/2026, 23:50:43 | 17/06/2026, 13:01:43 | No | Yes | Salt Typhoon | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-6387, CVE-2025-26465, CVE-2025-32728 | 14/06/2026, 07:38:20 | - |
| 180.76.119.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS38365 | Beijing Baidu Netcom Science and Technology Co., Ltd. | Baidu | 13/06/2026, 23:50:42 | 17/06/2026, 18:00:32 | Yes | Yes | APT17, APT28, APT35, APT37, APT39, Cobalt Group, DragonFly, El-Machete, Gozi, Kimsuky, Mustang Panda, Packrat, Sandworm Team, The Shadow Brokers | CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 07:38:24 | baidu.com |
| 177.210.206.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134175 | UNIT A17,9/F SILVERCORP INT'L TOWER 707-713 NATHAN RD | Hong Kong Service | 13/06/2026, 23:50:42 | 16/06/2026, 22:40:14 | No | No | - | - | 08/06/2026, 07:38:27 | - |
| 38.46.10.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS9294 | GNET INC. | Cogent Communications | 13/06/2026, 23:50:42 | 17/06/2026, 08:47:15 | Yes | No | - | - | 14/06/2026, 07:38:29 | cogentco.com |
| 2407:3640:2315:5412::1:9999 | - | 🇸🇬 Singapore | - | true | Clean | AS141995 | Contabo Asia Private Limited | Contabo Asia | 13/06/2026, 23:50:41 | 17/06/2026, 20:52:03 | - | - | - | - | - | - |
| 104.223.5.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | RackNerd | 13/06/2026, 23:50:41 | 17/06/2026, 02:58:47 | Yes | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Berberoka, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2013-1896, CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-3581, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-10708, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-15945, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-16905, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-12783, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-28007, CVE-2020-28008, CVE-2020-28009, CVE-2020-28010, CVE-2020-28011, CVE-2020-28012, CVE-2020-28013, CVE-2020-28014, CVE-2020-28015, CVE-2020-28016, CVE-2020-28017, CVE-2020-28018, CVE-2020-28019, CVE-2020-28021, CVE-2020-28022, CVE-2020-28023, CVE-2020-28024, CVE-2020-28025, CVE-2020-28026, CVE-2020-35452, CVE-2020-8015, CVE-2021-26690, CVE-2021-26691, CVE-2021-27216, CVE-2021-34798, CVE-2021-36368, CVE-2021-38371, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-37451, CVE-2022-37452, CVE-2023-25690, CVE-2023-28625, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2023-51766, CVE-2024-39929, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 07:38:44 | racknerd.com |
| 2a02:4780:41:3643::1:18789 | - | 🇩🇪 Germany | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 13/06/2026, 23:50:40 | 14/06/2026, 08:59:50 | - | - | - | - | - | - |
| 16.61.98.•••:80 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 13/06/2026, 23:50:39 | 14/06/2026, 08:59:50 | - | - | - | - | - | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:50:39 | 17/06/2026, 02:15:29 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-41617 | 14/06/2026, 07:38:56 | - |
| 206.189.41.•••:19000 | - | 🇸🇬 Singapore | Yes | true | Clean | AS14061 | DigitalOcean, LLC | DigitalOcean | 13/06/2026, 23:50:39 | 17/06/2026, 17:17:56 | No | Yes | APT15, APT17, APT28, APT29, APT31, APT34, APT35, APT36, APT37, APT39, APT40, APT41, APT45, Bitter APT, Bluenoroff, Callisto Group, Carbanak, ChamelGang, CloudSorcerer, Cobalt Group, Daggerfly APT, Donot Team, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers, Volt Typhoon | CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-16905, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 07:39:01 | - |
| 177.210.207.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134175 | UNIT A17,9/F SILVERCORP INT'L TOWER 707-713 NATHAN RD | Hong Kong Service | 13/06/2026, 23:50:39 | 17/06/2026, 05:52:21 | No | No | - | - | 08/06/2026, 07:39:02 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:50:39 | 17/06/2026, 21:34:45 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728 | 14/06/2026, 07:39:05 | - |
| 43.138.38.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 13/06/2026, 23:50:39 | 14/06/2026, 09:42:06 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 14/06/2026, 07:39:10 | tencent.com, tencentcloud.com |
| 13.193.56.•••:8011 | - | 🇺🇸 United States | Yes | true | Leaked | AS16509 | Amazon.com, Inc. | Amazon | 13/06/2026, 23:50:39 | 17/06/2026, 02:58:44 | Yes | No | - | - | 14/06/2026, 07:39:11 | bookworm.com, lovefilm.com, shopbop.com, boxofficemojo.com, amaozn.com, com.be, amazonpay.com, amzn.asia, associates-amazon.com, endless.com, amazonaws.com, amazon.com |
| 114.24.96.•••:444 | - | 🇹🇼 Taiwan | Yes | true | Leaked | AS3462 | Data Communication Business Group | Chunghwa Telecom Data Group | 13/06/2026, 23:50:39 | 14/06/2026, 09:42:06 | Yes | No | - | - | 14/06/2026, 07:39:15 | twgate.net, hinet.net, xuite.net, cht.com.tw, chttl.com.tw |
| 216.250.108.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | Silvercorp International Tower | 13/06/2026, 23:50:38 | 16/06/2026, 22:40:14 | No | No | - | - | 08/06/2026, 07:39:16 | - |
| 154.219.113.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS401701 | cognetcloud INC | Cloud Innovation | 13/06/2026, 23:50:38 | 17/06/2026, 08:47:19 | No | Yes | Packrat | - | 14/06/2026, 07:39:18 | - |
| 201.51.21.•••:443 | - | 🇳🇱 Netherlands | Yes | true | Clean | AS210976 | Timeweb, LLP | Taiwan Cloud | 13/06/2026, 23:50:37 | 17/06/2026, 05:09:00 | - | - | - | - | - | - |
| 43.138.249.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 13/06/2026, 23:50:37 | 17/06/2026, 18:43:34 | Yes | No | - | - | 14/06/2026, 07:39:24 | tencent.com, tencentcloud.com |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:48:54 | 17/06/2026, 14:24:20 | No | Yes | APT15, APT28, APT31, APT35, APT37, APT39, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2021-46784, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728 | 14/06/2026, 04:04:06 | - |
| 4.255.164.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 13/06/2026, 23:48:53 | 14/06/2026, 05:26:45 | - | - | - | - | - | - |
| 180.76.119.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS38365 | Beijing Baidu Netcom Science and Technology Co., Ltd. | Baidu | 13/06/2026, 23:48:52 | 17/06/2026, 14:24:17 | Yes | Yes | APT17, APT28, APT35, APT37, APT39, Cobalt Group, DragonFly, El-Machete, Gozi, Kimsuky, Mustang Panda, Packrat, Sandworm Team, The Shadow Brokers | CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 04:04:17 | baidu.com |
| 177.210.206.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134175 | UNIT A17,9/F SILVERCORP INT'L TOWER 707-713 NATHAN RD | Hong Kong Service | 13/06/2026, 23:48:52 | 16/06/2026, 19:03:32 | No | No | - | - | 08/06/2026, 04:04:21 | - |
| 38.46.10.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS9294 | GNET INC. | Cogent Communications | 13/06/2026, 23:48:52 | 17/06/2026, 20:49:32 | Yes | No | - | - | 14/06/2026, 04:04:22 | cogentco.com |
| 104.223.5.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | RackNerd | 13/06/2026, 23:48:50 | 16/06/2026, 23:20:39 | Yes | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Berberoka, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2013-1896, CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-3581, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-10708, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-15945, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-16905, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-12783, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-28007, CVE-2020-28008, CVE-2020-28009, CVE-2020-28010, CVE-2020-28011, CVE-2020-28012, CVE-2020-28013, CVE-2020-28014, CVE-2020-28015, CVE-2020-28016, CVE-2020-28017, CVE-2020-28018, CVE-2020-28019, CVE-2020-28021, CVE-2020-28022, CVE-2020-28023, CVE-2020-28024, CVE-2020-28025, CVE-2020-28026, CVE-2020-35452, CVE-2020-8015, CVE-2021-26690, CVE-2021-26691, CVE-2021-27216, CVE-2021-34798, CVE-2021-36368, CVE-2021-38371, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-37451, CVE-2022-37452, CVE-2023-25690, CVE-2023-28625, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2023-51766, CVE-2024-39929, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 04:04:38 | racknerd.com |
| 2a02:4780:41:3643::1:18789 | - | 🇩🇪 Germany | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 13/06/2026, 23:48:50 | 14/06/2026, 06:08:55 | - | - | - | - | - | - |
| 16.61.98.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 13/06/2026, 23:48:49 | 14/06/2026, 06:08:55 | - | - | - | - | - | - |
| 178.104.235.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 13/06/2026, 23:48:49 | 14/06/2026, 06:08:55 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 04:04:51 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:48:48 | 18/06/2026, 03:54:34 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-41617 | 14/06/2026, 04:04:55 | - |
| 177.210.207.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134175 | UNIT A17,9/F SILVERCORP INT'L TOWER 707-713 NATHAN RD | Hong Kong Service | 13/06/2026, 23:48:48 | 17/06/2026, 02:56:21 | No | No | - | - | 08/06/2026, 04:05:01 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:48:47 | 17/06/2026, 17:58:07 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728 | 14/06/2026, 04:05:06 | - |
| 43.138.38.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 13/06/2026, 23:48:47 | 14/06/2026, 06:08:53 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 14/06/2026, 04:05:09 | tencent.com, tencentcloud.com |
| 13.193.56.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS16509 | Amazon.com, Inc. | Amazon | 13/06/2026, 23:48:47 | 18/06/2026, 05:19:22 | Yes | No | - | - | 14/06/2026, 04:05:11 | bookworm.com, lovefilm.com, shopbop.com, boxofficemojo.com, amaozn.com, com.be, amazonpay.com, amzn.asia, associates-amazon.com, endless.com, amazonaws.com, amazon.com |
| 114.24.96.•••:18789 | - | 🇹🇼 Taiwan | - | true | Leaked | AS3462 | Data Communication Business Group | Chunghwa Telecom Data Group | 13/06/2026, 23:48:47 | 16/06/2026, 11:13:54 | Yes | No | - | - | 14/06/2026, 04:05:14 | twgate.net, hinet.net, xuite.net, cht.com.tw, chttl.com.tw |
| 216.250.108.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134548 | DXTL Tseung Kwan O Service | Silvercorp International Tower | 13/06/2026, 23:48:47 | 16/06/2026, 19:03:32 | No | No | - | - | 08/06/2026, 04:05:15 | - |
| 154.219.113.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS401701 | cognetcloud INC | Cloud Innovation | 13/06/2026, 23:48:47 | 17/06/2026, 05:06:16 | No | Yes | Packrat | - | 14/06/2026, 04:05:18 | - |
| 51.44.169.•••:18789 | - | 🇫🇷 France | - | true | Clean | AS16509 | Amazon.com, Inc. | A100 Row Inc | 13/06/2026, 23:46:58 | 17/06/2026, 15:05:26 | No | No | - | - | 08/06/2026, 05:25:44 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:46:57 | 17/06/2026, 14:22:22 | No | Yes | APT15, APT28, APT31, APT35, APT37, APT39, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Gamaredon Group, Gaza Cybergang, Inception Framework, Kimsuky, MuddyWater Group, Mustang Panda, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SideWinder APT, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2021-46784, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728 | 14/06/2026, 05:25:48 | - |
| 4.255.164.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS8075 | Microsoft Corporation | Microsoft | 13/06/2026, 23:46:57 | 14/06/2026, 05:24:55 | - | - | - | - | - | - |
| 180.76.119.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS38365 | Beijing Baidu Netcom Science and Technology Co., Ltd. | Baidu | 13/06/2026, 23:46:56 | 17/06/2026, 14:22:20 | Yes | Yes | APT17, APT28, APT35, APT37, APT39, Cobalt Group, DragonFly, El-Machete, Gozi, Kimsuky, Mustang Panda, Packrat, Sandworm Team, The Shadow Brokers | CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985 | 14/06/2026, 05:25:57 | baidu.com |
| 177.210.206.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134175 | UNIT A17,9/F SILVERCORP INT'L TOWER 707-713 NATHAN RD | Hong Kong Service | 13/06/2026, 23:46:56 | 16/06/2026, 19:01:41 | No | No | - | - | 08/06/2026, 00:29:05 | - |
| 38.46.10.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS9294 | GNET INC. | Cogent Communications | 13/06/2026, 23:46:55 | 17/06/2026, 20:46:59 | Yes | No | - | - | 14/06/2026, 00:29:07 | cogentco.com |
| 104.223.5.•••:18789 | - | 🇺🇸 United States | Yes | true | Leaked | AS36352 | HostPapa | RackNerd | 13/06/2026, 23:46:54 | 16/06/2026, 23:18:43 | Yes | Yes | APT14, APT15, APT28, APT29, APT31, APT34, APT35, APT37, APT39, APT40, APT41, Bitter APT, Bluenoroff, Callisto Group, Cobalt Group, Donot Team, Earth Berberoka, Equation Group, Gamaredon Group, Gaza Cybergang, Hafnium Group, Inception Framework, IronHusky, Kimsuky, Lazarus Group, MuddyWater Group, Mustang Panda, Patchwork, RomCom Group, Salt Typhoon, Sandworm Team, Sea Turtle Group, SharpPanda, SideWinder APT, TA505, The Shadow Brokers, UNC2452, Volt Typhoon, WIRTE | CVE-2006-20001, CVE-2013-1896, CVE-2013-4352, CVE-2013-5704, CVE-2013-6438, CVE-2014-0098, CVE-2014-0117, CVE-2014-0118, CVE-2014-0226, CVE-2014-0231, CVE-2014-3581, CVE-2014-8109, CVE-2015-0228, CVE-2015-3183, CVE-2015-3185, CVE-2016-0736, CVE-2016-10708, CVE-2016-20012, CVE-2016-2161, CVE-2016-4975, CVE-2016-5387, CVE-2016-8612, CVE-2016-8743, CVE-2017-15710, CVE-2017-15715, CVE-2017-15906, CVE-2017-15945, CVE-2017-3167, CVE-2017-7679, CVE-2017-9788, CVE-2017-9798, CVE-2018-1283, CVE-2018-1301, CVE-2018-1302, CVE-2018-1303, CVE-2018-1312, CVE-2018-15473, CVE-2018-15919, CVE-2018-17199, CVE-2018-20685, CVE-2019-0217, CVE-2019-0220, CVE-2019-10092, CVE-2019-10098, CVE-2019-16905, CVE-2019-17567, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11985, CVE-2020-12783, CVE-2020-14145, CVE-2020-15778, CVE-2020-1927, CVE-2020-1934, CVE-2020-28007, CVE-2020-28008, CVE-2020-28009, CVE-2020-28010, CVE-2020-28011, CVE-2020-28012, CVE-2020-28013, CVE-2020-28014, CVE-2020-28015, CVE-2020-28016, CVE-2020-28017, CVE-2020-28018, CVE-2020-28019, CVE-2020-28021, CVE-2020-28022, CVE-2020-28023, CVE-2020-28024, CVE-2020-28025, CVE-2020-28026, CVE-2020-35452, CVE-2020-8015, CVE-2021-26690, CVE-2021-26691, CVE-2021-27216, CVE-2021-34798, CVE-2021-36368, CVE-2021-38371, CVE-2021-39275, CVE-2021-40438, CVE-2021-41617, CVE-2021-44790, CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30556, CVE-2022-31813, CVE-2022-36760, CVE-2022-37436, CVE-2022-37451, CVE-2022-37452, CVE-2023-25690, CVE-2023-28625, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2023-51766, CVE-2024-39929, CVE-2025-26465, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 00:29:22 | racknerd.com |
| 2a02:4780:41:3643::1:18789 | - | 🇩🇪 Germany | - | true | Clean | AS47583 | Hostinger International Limited | Hostinger | 13/06/2026, 23:46:53 | 14/06/2026, 06:07:08 | - | - | - | - | - | - |
| 16.61.98.•••:18789 | - | 🇺🇸 United States | - | true | Clean | AS16509 | Amazon.com, Inc. | Amazon | 13/06/2026, 23:46:53 | 14/06/2026, 06:07:07 | - | - | - | - | - | - |
| 178.104.235.•••:18789 | - | 🇩🇪 Germany | - | true | Clean | AS24940 | Hetzner Online GmbH | Hetzner | 13/06/2026, 23:46:52 | 14/06/2026, 06:07:07 | No | No | - | CVE-2023-28531, CVE-2023-38408, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2024-39894, CVE-2024-6387, CVE-2025-26465, CVE-2025-26466, CVE-2025-32728, CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 | 14/06/2026, 00:29:36 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:46:52 | 18/06/2026, 03:52:39 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-41617 | 14/06/2026, 00:29:38 | - |
| 177.210.207.•••:18789 | - | 🇭🇰 Hong Kong | Yes | true | Clean | AS134175 | UNIT A17,9/F SILVERCORP INT'L TOWER 707-713 NATHAN RD | Hong Kong Service | 13/06/2026, 23:46:51 | 17/06/2026, 02:54:19 | No | No | - | - | 08/06/2026, 00:29:43 | - |
| 107.163.138.•••:18789 | - | 🇺🇸 United States | Yes | true | Clean | AS132839 | POWER LINE DATACENTER | Federal Online Group LLC | 13/06/2026, 23:46:51 | 17/06/2026, 17:56:10 | No | Yes | APT28, APT35, APT37, APT39, Cobalt Group, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10002, CVE-2016-10003, CVE-2016-10708, CVE-2016-20012, CVE-2017-15906, CVE-2018-1000024, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-12519, CVE-2019-12521, CVE-2019-12523, CVE-2019-12525, CVE-2019-12526, CVE-2019-12529, CVE-2019-18676, CVE-2019-18677, CVE-2019-18678, CVE-2019-18679, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-11945, CVE-2020-14058, CVE-2020-14145, CVE-2020-15049, CVE-2020-15778, CVE-2020-24606, CVE-2020-25097, CVE-2021-28651, CVE-2021-28652, CVE-2021-31807, CVE-2021-36368, CVE-2021-41617, CVE-2023-38408, CVE-2023-48795, CVE-2023-51385, CVE-2025-26465, CVE-2025-32728 | 14/06/2026, 00:29:47 | - |
| 43.138.38.•••:18789 | - | 🇨🇳 China mainland | Yes | true | Leaked | AS45090 | Shenzhen Tencent Computer Systems Company Limited | Tencent Cloud Computing | 13/06/2026, 23:46:50 | 14/06/2026, 06:07:05 | Yes | Yes | APT28, APT35, APT37, APT39, Cobalt Group, El-Machete, Kimsuky, Mustang Panda, Sandworm Team, The Shadow Brokers | CVE-2016-10708, CVE-2017-15906, CVE-2018-15473, CVE-2018-15919, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2020-14145, CVE-2021-41617 | 14/06/2026, 00:29:52 | tencent.com, tencentcloud.com |
| 13.193.56.•••:18789 | - | 🇺🇸 United States | - | true | Leaked | AS16509 | Amazon.com, Inc. | Amazon | 13/06/2026, 23:46:50 | 18/06/2026, 05:17:25 | Yes | No | - | - | 14/06/2026, 00:29:53 | bookworm.com, lovefilm.com, shopbop.com, boxofficemojo.com, amaozn.com, com.be, amazonpay.com, amzn.asia, associates-amazon.com, endless.com, amazonaws.com, amazon.com |