104.18.29.244 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 104.18.29.244 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 10/100

Host and Network Information

  • Country:
  • Network:
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: indesa.gov.co archive.auditlogs-staging.cfdata.org aasghw.ci-ci-1-13759618200-202-1-tmp.lucca.io aghw.ci-ci-1-13759618200-202-1-tmp.lucca.io aasghw.ci-platform-staging-13731305185-201-1-tmp.lucca.io aghw.ci-ci-1-13731305185-201-1-tmp.lucca.io aasghw.ci-ci-1-13721110276-91-1-tmp.lucca.io aasghw.ci-previews-13722770913-195-1-tmp.lucca.io aghw.ci-observability-13717797406-193-2-tmp.lucca.io aasghw.ci-previews-13709758310-192-1-tmp.lucca.io aghw.ci-ci-1-13678334137-186-2-tmp.lucca.io aghw.ci-ci-1-13656701599-184-1-tmp.lucca.io aasghw.ci-poc3az-13335926532-134-1-tmp.lucca.io aghw.ci-poc3az-13335926532-134-1-tmp.lucca.io aasghw.ci-ci-1-13287642281-122-1-tmp.lucca.io aghw.ci-observability-13287642281-122-1-tmp.lucca.io members.molagers.org aghw.ci-ci-1-13287642281-122-1-tmp.lucca.io irme.azdes.gov irme.azdes.gov.cdn.cloudflare.net aghw.ci-platform-staging-12673759327-1103-5-tmp.lucca.io aasghw.ci-platform-staging-12673759327-1103-5-tmp.lucca.io aghw.ci-poc3az-12673759327-1103-5-tmp.lucca.io aasghw.ci-previews-12673759327-1103-5-tmp.lucca.io aghw.ci-previews-12429457689-64-1-tmp.lucca.io aghw.ci-previews-12410716421-1001-1-tmp.lucca.io aghw.ci-poc3az-12393708429-980-1-tmp.lucca.io collector.observability.lucca.io aghw.ci-poc3az-12291531817-57-1-tmp.lucca.io aghw.larago.lucca.io aasghw.larago.lucca.io aghw.ci-poc3az-12236525115-904-9-tmp.lucca.io aasghw.ci-poc3az-12252121185-54-1-tmp.lucca.io aghw.ci-poc3az-12252121185-54-1-tmp.lucca.io aghw.ci-ci-1-12238975965-916-1-tmp.lucca.io dominikvanawe.com www.gettysburgpa.gov aasghw.ci-ci-1-12066273798-861-1-tmp.lucca.io aghw.ci-ci-1-12008483320-828-1-tmp.lucca.io aasghw.ci-ci-1-12008483320-828-1-tmp.lucca.io aghw.ci-ci-1-12008459534-827-1-tmp.lucca.io aasghw.ci-cluster-1-12007298582-824-1-tmp.lucca.io aghw.ci-cluster-1-12007298582-824-1-tmp.lucca.io aasghw.ci-ci-1-11956715605-808-1-tmp.lucca.io aghw.ci-ci-1-11956715605-808-1-tmp.lucca.io aasghw.ci-cluster-1-11934058555-45-1-tmp.lucca.io aghw.ci-observability-11909314850-792-3-tmp.lucca.io aasghw.nnativel.lucca.io aasghw.ci-previews-11793427318-739-tmp.lucca.io aghw.ci-cluster-1-11743550341-737-tmp.lucca.io aghw.ci-previews-11743550341-737-tmp.lucca.io aasghw.ci-previews-11743550341-737-tmp.lucca.io aghw.lauzuret.lucca.io aghw.observability.lucca.io aghw.ci-cluster-1-11576109262-699-tmp.lucca.io soporte.syscomcolombia.com aasghw.ci-previews-11341082875-654-tmp.lucca.io aasghw.ci-previews-11252611233-28-tmp.lucca.io aghw.ci-previews-11252611233-28-tmp.lucca.io aasghw.cluster-1.lucca.io aasghw.dgermain.lucca.io aasghw.qjoly.lucca.io aghw.qjoly.lucca.io www.molagers.org molagers.org members.flow.demo.axegroup.com partners.rndaws.internal.axegroup.com id.flow.demo.axegroup.com cdn.atlantajewishconnector.com argocd.metlife.drprod.axegroup.com argocd.axe.platform.axegroup.com imperialusedautospecials.co.za noreps.no tanda-receiver-dev.edg.com.au wap.pilipala.tv argocd.metlife.sit3.axegroup.com lab007.nets-cloud.com argocd.axe.flow.axegroup.com faodinfocus.ca argocd.arpc.sit.axegroup.com chatapi.rndaws.internal.axegroup.com argocd.metlife.sit2.axegroup.com wqb753.com edge-receiver.auditlogs-staging.cfdata.org ok8pg3.com webview.ovo.id webview.ovo.id.cdn.cloudflare.net ovo.id developers.syscomcolombia.com girlsdish.net edge.auditlogs-staging.cfdata.org grcbox.org www.knoll.com prisme-old.lucca.io autoconfig.lucca.io blog.lucca.io pop3.lucca.io prisme.lucca.io int.holmen.com argocd.metlife.sit.axegroup.com rndaws.internal.axegroup.com mldax.flow.axegroup.com cnzlerp.com qa.leben-mit-myelofibrose.de stg.leben-mit-myelofibrose.de uat.leben-mit-myelofibrose.de prod.leben-mit-myelofibrose.de ansible.vm.lucca.io lucca.io ftp.lucca.io prisme-proxy.lucca.io smtp.lucca.io www.lucca.io imap.lucca.io qa-dk-tsb-ecomm-43-delivery-opts-dk.az.ssdgws.co.uk shop-cm.feldschloesschen.swiss shop.feldschloesschen.swiss heycolor.com prodna05.canada.michaels.com midwestsharp.com smbcedbpensions.co.uk test-azure-charming-pitbull-0015.auth0c.com www.feldschloesschen.swiss apk.bingoplus.net bzgame.cc danimartin.com.es knaufamf.pl dza234.com ocss.site www.ovako.se www.hellofresh.de.cdn.cloudflare.net qa-fi-lfy-fixapd-370-vtomissingresources.az.ssdgws.co.uk www.bandits.faire.com disarstar.de ludoingame.site www.otrium.be smittenkitten.faire.com leapconcept.faire.com b29.tv www.elf.co.cdn.cloudflare.net ademio.net www.disarstar.de close2urheart.faire.com tugenuff.faire.com taylorgray.faire.com blog.faire.com beta.otrium.be otrium.be test.staging-app.iclinic.com.br victoriaeggs.faire.com staging-app.iclinic.com.br www.elf.co api.faire.com kurohone.com casinosarea.com patstore.faire.com onlinecasinostreet.com bingo38.com bingojackpotwinners.com bingokang.com www.syscomcolombia.com mychomelinens.faire.com cabaretgamesonline.com bfaeee154d601f080c7021dc0b558e67ca3a7368.vercel-workers.com shopdna.ancestry.de edge.tenants.cyx-test-bootstrap-kafka.auth0c.com cyx-test-bootstrap-kafka.auth0c.com 0f8bb1b180d0aa3d3facd5697e79c441e211ebb6.vercel-workers.com zanaviaa.faire.com savoyactive.faire.com www.nicorette.com.tw retool.faire.com 4husp055.com sso-auth.faire.com www.grantthornton.co.ke www.faire.com.cdn.cloudflare.net www.nicorette.es nicorette.es nicorette.com.tw www.jessicamauboy.com.au syscomcolombia.com gunterautomotive.com travelbyblue.com www.v5test.syscomcolombia.com v5test.syscomcolombia.com www.nicorette.com.tw.cdn.cloudflare.net 4hua43.com pah-science.com.cdn.cloudflare.net olb-ip.cuwest.org.cdn.cloudflare.net olb.cuwest.org.cdn.cloudflare.net curve-qa.jnj.com.cdn.cloudflare.net www.nicorette.es.cdn.cloudflare.net trailmastersuspension.com www.trailmastersuspension.com.cdn.cloudflare.net jessicamauboy.com.au www.thanoswins.cf.cdn.cloudflare.net plasianindivi.info elf.co www.grantthornton.co.ke.cdn.cloudflare.net nicorette.es.cdn.cloudflare.net maxxbetslotss.com redirect2play.com 322du.com www.322du.com

Open Ports Detected

2052 2082 2083 2086 2087 2096 443 80 8080 8443 8880

Map

Whois Information

Links to attack logs

anonymous-proxy-ip-list-2025-06-21

Share on: