104.16.133.22 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 104.16.133.22 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 32/100

Host and Network Information

  • Tags: akamaias, akamaiasn1, amazon02, as15169, as16509, as20940, as3359, as8075, as852, cuba, facebook, geoip, ghost, google, indonesia, level3, media, mexico, mini, proton, public url, seznam, telecom, twitter, ukraine, win32, win64

  • JARM: 29d3fd00029d29d00042d43d00041d5de67cc9954cc85372523050f20b5007

  • View other sources: Spamhaus VirusTotal

  • Country:
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Countries Attacked: Anguilla, Aruba, Australia, Bahamas, Barbados, Canada, Cayman Islands, Costa Rica, Curaçao, Georgia, Guatemala, Japan, Mexico, Netherlands, Panama, Philippines, Poland, Saint Kitts and Nevis, Saint Martin (French part), Saint Vincent and the Grenadines, Sint Maarten (Dutch part), Tanzania United Republic of, Trinidad and Tobago, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
  • Passive DNS Results: shopexamtools.hillrom.com www.arkansas.com arkansas.com demand.supply api.demand.supply live.demand.supply img-10.onedio.com img-11.onedio.com gif-3.onedio.com img-3.onedio.com onedio.com gif-2.onedio.com img-2.onedio.com img-s2.onedio.com assets.onedio.com img-1.onedio.com img-s1.onedio.com srv-cdn.onedio.com img.onedio.com proj.onedio.com

Malware Detected on Host

Count: 8 d307dbb9957f8a47e4363da7da0d332a10f4de8b3dc6778118b4b12e407d5b7a b1ab9b4b52c8bd9aeb37d9d4f2610b4e0744b17cd8eaf74de63cb8e955d00893 9e31d7bfb3a6024ff1c596208640a4d3567ef7778acfd8d8c36e8d735f0c4f12 e09abd81b7fcc83d55036a5b82b49d6102ea24a1c0c3e2119965b53fb52d5289 5ded25faa41d8155b52d10ef2083ee9673988733e81eb7f51574b9a2aa42ad35 7a3452fe8cd304290466a2590a5e088c7374b693c3d0f6d7e663ded94812e694 e5b1b4fc0d17b95257d07b4fd309ed73b33a19a6cbe3f8026b71a251dc77abaa b6c440196bda9cf5310a510bb0f7f0f8c909e3e02bd8259621e5496bc54193e6

Open Ports Detected

2052 2053 2082 2083 2086 2087 2095 443 80 8080 8443 8880

Map

Whois Information

Links to attack logs

anonymous-proxy-ip-list-2025-06-22

Share on: