← New public search

// public entity intelligence

109.238.239.26

IPListed in 1 public feed1 pDNS relationships

Evidence summary

Researcher feed observations and neutral DNS history are counted separately.

Feed first seen
Jul 2026
Feed last seen
Jul 2026
Feed matches
1
pDNS relationships
1
pDNS first seen
Sep 2026
pDNS last seen
Sep 2026
pDNS observations
1

Tags

historicalhoneypot

Sources

Honeypot infrastructure watch
Public feed matches
Honeypot infrastructure watch7/25/2026, 8:56:17 PM

Observed 34 times. Targeted ports: 445, 1433, 3306. Country: Georgia. Alert categories: Not Suspicious Traffic. Signatures: ET INFO Potentially unsafe SMBv1 protocol in use. Usernames: root.

Related hosts and IPs

Public passive DNS relationships connected to this exact indicator.

Network ownership

BGP origin and registry data from Team Cymru.

Enriched
Origin ASN
AS35805
BGP prefix
109.238.224.0/20
Registry country
GE

SILKNET-AS - SILKNET-AS, GE

Registry country is RIR assignment data, not IP geolocation.

Checked 9/30/2026, 11:20:11 AM

Popularity

Daily link and hosting prominence from top1m.org; not a security verdict or traffic estimate.

Edition 2026-10-01

Not present in the current Top 1M lists.

Private research

Take this investigation further

1 public pDNS relationships are available. Private research adds exact timing, focused pivots, and matching paid-feed intelligence. Each private app search costs 1 CTIDAO.

About CTIDAO