General Information

Submitter Diversity: Low
Risk (0-10)details: 0
IP Address (click for more detail): 212.113.102.70
Hostname: inet-1vpn.ptr.network
Country:  RU
ASN: 6672
AS Name:  ASRELCOMSPB - LIMITED LIABILITY COMPANY RELCOM-SPB, RU
Network:  212.113.96.0/19 (212.113.96.0-212.113.127.255) 212.113.128.0
Reports:  - none -
Targets:  - none -
First Reported: N/A
Most Recent Report: N/A
Comment: - none -
Abuse Contact for AS6672: [email protected]
Links to articles about the IP from rosti.bin.re

Note: We update the data once an hour. To refresh the data, click here. Not all source IPs in our database are "attackers". There are a few common false positives. For example, hosts that participate in P2P networks, mail servers, load balancers and DNS servers are some of the most common issues. For details, click on the number of reports. Clicking on the number of reports may allow you to conclude if a report is a false positive or not. Scroll down for information from other data feeds.

SSH/Telnet Logs

no ssh logs.

Web Honeypot Logs

Date Reports Different URLs Different User Agents
2024-09-01129421
2024-08-31282471
2024-08-30216421
2024-08-29166471
2024-08-28132421
2024-08-2787421
2024-08-26382471
2024-08-25135421
2024-08-24180421
2024-08-23171421
2024-08-22132421
2024-08-2142421
2024-08-1754421
2024-08-16132421

For more details about the web honeypot, see the Weblogs Page. Do not use these reports to identify IP addresses as "bad" for now.

External Threat Feeds

This data was retrieved from various external data feeds.

First Seen Last Seen Feed
2024-08-142024-09-01Port 110 Scanner
2024-08-142024-09-01Port 143 Scanner
2024-08-112024-09-02Port 22 Scanner
2024-07-232024-09-01Port 25 Scanner
2024-08-142024-09-01Port 993 Scanner
2024-08-282024-09-01Suspect Bots/Infected
2024-08-142024-09-01courier imap attacker
2024-08-122024-09-05CI Army List
Check Threatstop for more data link arrow