104.156.140.145 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 104.156.140.145 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

🟢 Minimal — 15/100

Geographic Location

Host and Network Information

  • View other sources: Spamhaus VirusTotal Shodan AbuseIPDB
  • Country: United States
  • Network: AS35916 multacom corporation
  • Noticed: 1 time
  • Protocols Attacked: Anonymous Proxy
  • Open Ports: 123, 22, 2345, 3000, 3128
  • Tor Node: No

Associated CVEs

  • CVE-2018-1172

Passive DNS

  • tk22222.xyz

Attack Log References

Whois Information

NetRange: 104.156.140.0 - 104.156.143.255 CIDR: 104.156.140.0/22 NetName: RACKNERD NetHandle: NET-104-156-140-0-1 Parent: NET104 (NET-104-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: RackNerd LLC (RL-872) RegDate: 2022-01-06 Updated: 2023-07-10 Comment: https://www.racknerd.com/ Comment: NOC Hours: 24x7 Comment: support@racknerd.com Ref: https://rdap.arin.net/registry/ip/104.156.140.0 OrgName: RackNerd LLC OrgId: RL-872 Address: 10602 N. Trademark Pkwy Suite 511 City: Rancho Cucamonga StateProv: CA PostalCode: 91730 Country: US RegDate: 2021-10-20 Updated: 2022-03-02 Comment: https://www.racknerd.com Comment: Support is available 24x7 at support@racknerd.com Comment: Report abuse to: reportabuse@racknerd.com Ref: https://rdap.arin.net/registry/entity/RL-872 OrgTechHandle: RACKN3-ARIN OrgTechName: RackNerd NOC OrgTechPhone: +1-888-881-6373 OrgTechEmail: support@racknerd.com OrgTechRef: https://rdap.arin.net/registry/entity/RACKN3-ARIN OrgAbuseHandle: RAD128-ARIN OrgAbuseName: RackNerd Abuse Department OrgAbusePhone: +1-888-881-6373 OrgAbuseEmail: reportabuse@racknerd.com OrgAbuseRef: https://rdap.arin.net/registry/entity/RAD128-ARIN NetRange: 104.156.140.0 - 104.156.140.255 CIDR: 104.156.140.0/24 NetName: RACKNERD-LAX NetHandle: NET-104-156-140-0-2 Parent: RACKNERD (NET-104-156-140-0-1) NetType: Reassigned OriginAS: Customer: RackNerd LLC (C08156295) RegDate: 2022-01-06 Updated: 2022-01-06 Comment: RackNerd LLC is a web hosting and internet infrastructure services provider. Comment: Comment: Website: https://www.racknerd.com/ Comment: Report any abuse via e-mail to: reportabuse@racknerd.com Ref: https://rdap.arin.net/registry/ip/104.156.140.0 CustName: RackNerd LLC City: Rancho Cucamonga StateProv: CA PostalCode: 91730 Country: US RegDate: 2022-01-06 Updated: 2022-01-06 Ref: https://rdap.arin.net/registry/entity/C08156295 OrgTechHandle: RACKN3-ARIN OrgTechName: RackNerd NOC OrgTechPhone: +1-888-881-6373 OrgTechEmail: support@racknerd.com OrgTechRef: https://rdap.arin.net/registry/entity/RACKN3-ARIN OrgAbuseHandle: RAD128-ARIN OrgAbuseName: RackNerd Abuse Department OrgAbusePhone: +1-888-881-6373 OrgAbuseEmail: reportabuse@racknerd.com OrgAbuseRef: https://rdap.arin.net/registry/entity/RAD128-ARIN