104.16.12.8 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 104.16.12.8 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • JARM: 29d3dd00029d29d00042d43d00041d5de67cc9954cc85372523050f20b5007

  • View other sources: Spamhaus VirusTotal

  • Country:
  • Network: AS13335 cloudflare
  • Noticed: 1 times
  • Protcols Attacked: Anonymous Proxy
  • Passive DNS Results: www.farrow-ball.com.cdn.cloudflare.net www.speedyfiledownload.com speedyfiledownload.com Static.adzerk.net static.boomerprimenetwork.com static.xconomy.com static.localyokelmedia.com static.ap.bittorrent.com static.opensky.com static.multibriefs.com static.smallwolfbigpack.com static.parisbouge.com secure.adzerk.net static.adsie.co static.mvcreate.multiview.com static.asp.skavaone.com static.tentaculos.net static.realself.com static.moneymappress.com static.newsmaxfeednetwork.com static.redgage.net static.bitmedianetwork.com static.daddyhunt.com static.sophio.com static.pierryinteractive.com static.adstp.com static.valueviewmedia.com static.netsportsmedia.com static.liveonlineservices.com static.mediasea.ca static.gamerati.net static.kytori.com static.gunpartners.com static.9fold.com static.eastlinemedia.com static.multiview.com static.bannersbroker.com static.888media.net static.adzerk.net.cdn.cloudflare.net static.autographcollector.com static.fluidads.co static.ecigmedia.com static.verticalize.net static.shipserv.com static.land8media.com static.messagespaceads.com static.fl-ads.com static.c3ads.com

Malware Detected on Host

Count: 22 1725ff8c9cabfc14132dc2fd239e0d0f45093973465cd8f2c2b901ccc098fdcd 66c0eaae98ca77eaec1786bef7f5824c7a9b982e12ddee7916d5fa89299ac33a 902a124b5987228fec69c5f82d64c3a648793b4888d64e06f900fb9bb615692d be09462057a59e6576149b3fbf42dc6870392330b51ff68efd309966cd312946 da23602a76912bd46fe8fd08738cedbffb57c05c890197a9bab709db01c9b6be 7869f6d31ef02029c5b7e54d962d3050df23c44cf1b3c2efd84811242a45dbc2 3ebe2768932601a36c2f40f383aec03ec505bba004b586ebba70d830bb21a059 33d109eda5aef38b88c7616e69069215db50a8b3f4b26938bd69902789f37733 d4d10ec3b92d9bc81f767afe6088bb174a5f1dec5725486cce4138aa8a948d74 fc1112e84deab9343aa554d661a628fc3baeb08c86f2884b126bdb5f0df69a5e

Open Ports Detected

2053 2082 2086 2087 2095 443 80 8443

Map

Whois Information

  • NetRange: 104.16.0.0 - 104.31.255.255
  • CIDR: 104.16.0.0/12
  • NetName: CLOUDFLARENET
  • NetHandle: NET-104-16-0-0-1
  • Parent: NET104 (NET-104-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS13335
  • Organization: Cloudflare, Inc. (CLOUD14)
  • RegDate: 2014-03-28
  • Updated: 2021-05-26
  • Comment: All Cloudflare abuse reporting can be done via https://www.cloudflare.com/abuse
  • Ref: https://rdap.arin.net/registry/ip/104.16.0.0
  • OrgName: Cloudflare, Inc.
  • OrgId: CLOUD14
  • Address: 101 Townsend Street
  • City: San Francisco
  • StateProv: CA
  • PostalCode: 94107
  • Country: US
  • RegDate: 2010-07-09
  • Updated: 2021-07-01
  • Ref: https://rdap.arin.net/registry/entity/CLOUD14
  • OrgAbuseHandle: ABUSE2916-ARIN
  • OrgAbuseName: Abuse
  • OrgAbusePhone: +1-650-319-8930
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2916-ARIN
  • OrgNOCHandle: CLOUD146-ARIN
  • OrgNOCName: Cloudflare-NOC
  • OrgNOCPhone: +1-650-319-8930
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/CLOUD146-ARIN
  • OrgTechHandle: ADMIN2521-ARIN
  • OrgTechName: Admin
  • OrgTechPhone: +1-650-319-8930
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ADMIN2521-ARIN
  • OrgRoutingHandle: CLOUD146-ARIN
  • OrgRoutingName: Cloudflare-NOC
  • OrgRoutingPhone: +1-650-319-8930
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/CLOUD146-ARIN
  • RNOCHandle: NOC11962-ARIN
  • RNOCName: NOC
  • RNOCPhone: +1-650-319-8930
  • RNOCEmail: [email protected]
  • RNOCRef: https://rdap.arin.net/registry/entity/NOC11962-ARIN
  • RAbuseHandle: ABUSE2916-ARIN
  • RAbuseName: Abuse
  • RAbusePhone: +1-650-319-8930
  • RAbuseEmail: [email protected]
  • RAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2916-ARIN
  • RTechHandle: ADMIN2521-ARIN
  • RTechName: Admin
  • RTechPhone: +1-650-319-8930
  • RTechEmail: [email protected]
  • RTechRef: https://rdap.arin.net/registry/entity/ADMIN2521-ARIN

Links to attack logs

anonymous-proxy-ip-list-2023-07-14