104.18.27.145 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 104.18.27.145 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • Country:
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: the-j-hotel-jesolo-lido-di-jesolo.hotelmix.it rotarians.carrentalexpress.com shriners.carrentalexpress.com veterans.carrentalexpress.com students.carrentalexpress.com www.carrentalexpress.com mailpharmacy.welldynerx.com email.genexae.com.au hotel-la-pineta-acciaroli.hotelmix.it sardegna-grand-hotel-terme-fordongianus.hotelmix.it hotel-san-michele-celle-ligure.hotelmix.it clients.welldynerx.com.cdn.cloudflare.net hotel-olympia-san-vigilio-di-marebbe.hotelmix.it hotel-vittoria-lignano-sabbiadoro.hotelmix.it ramada-plaza-tunis-hotel-gammarth.hotelmix.it hotel-president-silvi-marina.hotelmix.it cdn.cryptonews.com.au hotel-ristorante-pineta-campodonico.hotelmix.it hotel-careggi-florence.hotelmix.it villaggio-club-baia-di-dino-san-nicola-arcella.hotelmix.it residencia-campus-del-mar-hostel-barcelona.hotelmix.it hotel-villa-san-bartolo-vittoria.hotelmix.it hotel-rondine-marinella-di-sarzana.hotelmix.it dei-priori-hotel-assisi.hotelmix.it hotel-tea-dolomiti-alleghe.hotelmix.it hotel-relais-antica-masseria-conversano.hotelmix.it hotel-novo-moscow-city.hotelmix.it sub.remiandmichaeltesting.org wellconnected.welldynerx.com documents.welldynerx.com hotel-le-mura-foligno.hotelmix.it il-castagno-montemonaco.hotelmix.it albergo-al-parco-tavagnacco.hotelmix.it www.solarverein.info cashclub.academy solarverein.info entsvc-msec-int.welldynerx.com hotel-el-mondin-transacqua.hotelmix.it de-ie-98y-fixsc-34548-harmony-popup-to-d.socrates.ssdgws.co.uk locanda-aquila-nera-aquileia.hotelmix.it cambridge-intl.com kopaks.com www.cashclub.academy novus-city-hotel-athens.hotelmix.it hotel-chateau-blanc-la-thuile.hotelmix.it hx168.live ripamonti-residence-pieve-emanuele.hotelmix.it www.boscawennh.gov.cdn.cloudflare.net columbus-hotel-rome.hotelmix.it hotelmix.it thecrownandgreyhound.co.uk www.shoplitens.com dxctaydagitp6t6zprep-slot.paastest.epimore.com shoplitens.com qa-se-zfi-testfbmvp-20595-ccrcomptest.az.ssdgws.co.uk edge.tenants.plf-alican-cloudfront-test-11.auth0c.com plf-alican-cloudfront-test-11.auth0c.com wt.plf-alican-cloudfront-test-11.auth0c.com racingsports365.com smcreditpartner.com nycoinc.us prestonmoderndentistry.com sonymusicnashville.com www.sonymusicnashville.com network.carrentalexpress.com test-azure-wide-skunk-6562.auth0c.com www.maddocks.com.au store.setapp.com dev2.pull-ups.com core-internal.setapp.com cryptio-internal.setapp.com dev2.v2.pullups.com dev2.goodnites.com dev3.goodnites.com dev1.goodnites.com www.meetandgreets.io dev.jlabsportfolio.jnj.com jlabsportfolio.jnj.com stage.jlabsportfolio.jnj.com preprod.img1.frwd.com prod.flir.it prep.flir.it search.setapp.com mtga.setapp.com hoffman.meetandgreets.io www.regaine.es regaine.es www.au-exitwidget.com pmp-dev.lbl.gov www.bldgportal.com license.setapp.com stats.setapp.com prod.vyzultahcp.com test-stats.setapp.com c5q54.copy.paastest.co.uk tcceast.dev4.goodnites.com server1.tccwest.dev2.goodnites.com tccwest.dev1.goodnites.com server2.dev1.goodnites.com server1.tccwest.dev3.goodnites.com server2.tcceast.dev2.goodnites.com server1.tccwest.dev4.goodnites.com server2.tcceast.dev1.goodnites.com server2.dev4.goodnites.com server2.tccwest.dev3.goodnites.com server1.tcceast.dev1.goodnites.com server1.dev1.goodnites.com server2.tccwest.dev1.goodnites.com tcceast.dev1.goodnites.com server2.tcceast.dev3.goodnites.com dev4.goodnites.com server1.tccwest.dev1.goodnites.com server2.tccwest.dev4.goodnites.com tcceast.dev3.goodnites.com server1.tcceast.dev2.goodnites.com tccwest.dev2.goodnites.com server2.tccwest.dev2.goodnites.com server1.tcceast.dev3.goodnites.com server1.dev4.goodnites.com tcceast.dev2.goodnites.com server1.dev2.goodnites.com tccwest.dev4.goodnites.com server1.tcceast.dev4.goodnites.com dev.goodnites.com tccwest.dev3.goodnites.com server2.dev3.goodnites.com server1.dev3.goodnites.com server2.tcceast.dev4.goodnites.com server2.dev2.goodnites.com au-exitwidget.com qa-ca-czs-fixcaecom-5330-avoidloggingpas.az.ssdgws.co.uk www.fun-deals-malaysia.com common-auth-qa.genpt.com linkcoin.biz developer-api.setapp.com server1.dev1.v5.goodnites.com tccwest.dev2.v5.goodnites.com server1.tccwest.dev1.v5.goodnites.com server2.tccwest.dev3.v5.goodnites.com tcceast.dev2.v5.goodnites.com server1.dev3.v5.goodnites.com server1.tccwest.dev3.v5.goodnites.com server2.tcceast.dev1.v5.goodnites.com server1.tccwest.dev2.v5.goodnites.com dev2.v5.goodnites.com server1.dev2.v5.goodnites.com server1.tcceast.dev3.v5.goodnites.com dev3.v5.goodnites.com server2.tccwest.dev2.v5.goodnites.com server2.tcceast.dev3.v5.goodnites.com tcceast.dev3.v5.goodnites.com tcceast.dev1.v5.goodnites.com server2.dev2.v5.goodnites.com server2.tcceast.dev2.v5.goodnites.com server2.dev3.v5.goodnites.com server2.dev1.v5.goodnites.com origin.dev.v5.goodnites.com dev1.v5.goodnites.com tccwest.dev3.v5.goodnites.com server1.tcceast.dev2.v5.goodnites.com server2.tccwest.dev1.v5.goodnites.com server1.tcceast.dev1.v5.goodnites.com tccwest.dev1.v5.goodnites.com graph.stage.amctheatres.com mymanpower.nl dev.v5.goodnites.com edenwee.com www.stage.amctheatres.com payment.stage.amctheatres.com content.stage.amctheatres.com stage.amctheatres.com ftprivateclientgroup.com admin.setapp.com go.setapp.com health-metrics-api.setapp.com vendor-api.setapp.com millenniumbp.ch www.millenniumbp.ch sandbox-api.carrentalexpress.com redirect.setapp.com teams-api.setapp.com user-api.setapp.com customer.setapp.com moonpay.cloudflaresso.com mfa.setapp.com www.insightinvestment.at www.contournextone.ca img2.frwd.com img1.frwd.com preprod.fndry.frwd.com preprod.goodfoods.frwd.com preprod.warheads.frwd.com www.setapp.com setapp.com payments.setapp.com bfybf147.com yslbeauty.es 336i.net cdn.carrentalexpress.com sosaltlakecity.com www.sosaltlakecity.com www.ss4s.ewee.xyz www.vyzultahcp.com www.edenwee.com fallback.edenwee.com ss4s.ewee.xyz e0a081f1f9068b8d916a65c7f7f87a291ff8e705.vercel-workers.com hldev1.auth0c.com getitfixed.tv sandbox-network.carrentalexpress.com www.joinnbio.com application-phil.com stage.electronic-star.hu sandhillsofficesupply.com agencies.carrentalexpress.com sandbox.api.carrentalexpress.com carrentalexpress.com gsxjkn.electronic-star.hu electronic-star.hu ibetvn.app rsdautomotive.nl foo.cloudflare-test.identitysoon.com mapricuber.com.ar appsdev.uconfirm.com apps.uconfirm.com momentumbeseen.co.za api.uconfirm.com uat-thaitrade.gec.co.th uat-nex.gec.co.th cfacc.ally.cf ade1.contournextone.ca appsqa.uconfirm.com int.uconfirm.com prod.uconfirm.com qa.uconfirm.com appsint.uconfirm.com apidev.uconfirm.com apirc.uconfirm.com dev.uconfirm.com warheads.frwd.com goodfoods.frwd.com fndry.frwd.com www.xanax.com preprod.img2.frwd.com game-defender.com www.votredos.com payments.islandems.ca digitalpartnerservices.visaonline.com www.frwd.com prep.shopbecker.com inte.shopbecker.com prod.shopbecker.com integration.frwd.com preprod.frwd.com nralifeofduty.tv www.uconfirm.com kindredseniorcare.com scftest-api.demicafinance.com scftest.demicafinance.com www.joinnbio.com.cdn.cloudflare.net hhs.elldorado24.info www.insightinvestment.at.cdn.cloudflare.net dev.uconfirm.com.cdn.cloudflare.net int.uconfirm.com.cdn.cloudflare.net prod.uconfirm.com.cdn.cloudflare.net qa.uconfirm.com.cdn.cloudflare.net rc.uconfirm.com.cdn.cloudflare.net img1.frwd.com.cdn.cloudflare.net preprod.goodfoods.frwd.com.cdn.cloudflare.net preprod.img1.frwd.com.cdn.cloudflare.net preprod.warheads.frwd.com.cdn.cloudflare.net digitalpartnerservices.visaonline.com.cdn.cloudflare.net www.uconfirm.com.cdn.cloudflare.net www.frwd.com.cdn.cloudflare.net preprod.frwd.com.cdn.cloudflare.net my.sage.pt devapps.uconfirm.com.cdn.cloudflare.net www.sage.pt 2234ge.com sage.pt abautomotivenj.com uconfirm.com apps.uconfirm.com.cdn.cloudflare.net qen5.com ade1.contournextone.ca.cdn.cloudflare.net groupexch.com www.votredos.com.cdn.cloudflare.net votredos.com yhlifa.live egpnpp.live eujaib.live cgylpe.live ukpunl.live apxnyh.live xvtdel.live llgcfd.live hguyuz.live bryzxp.live mydjxu.live onjwjy.live xanax.com www.xanax.com.cdn.cloudflare.net prod.shopbecker.com.cdn.cloudflare.net prep.shopbecker.com.cdn.cloudflare.net

Open Ports Detected

2082 2083 2086 2087 443 80 8080 8443 8880

Map

Whois Information

Links to attack logs

anonymous-proxy-ip-list-2025-07-20

Share on: