104.21.47.72 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 104.21.47.72 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 30/100
Host and Network Information
-
Tags: cyber security, ioc, malicious, Nextray, phishing, tsec
-
View other sources: Spamhaus VirusTotal
-
Contained within other IP sets: coinbl_hosts
- Country:
- Network: AS13335 cloudflare
- Noticed: 1 times
- Protcols Attacked: SSH
- Countries Attacked: Canada, Czechia, Denmark, Estonia, France, Germany, Latvia, Lithuania, Norway, Poland, Romania, Turkey, Ukraine, United Kingdom of Great Britain and Northern Ireland, United States of America
- Passive DNS Results: mzyfq.com biggify.club alexaslot138.digital dentoto0182.com finleystreetstudios.com bridesmaiddressessales.com www.bridesmaiddressessales.com cancerwarriors.site hubahu.info nstereotypical.top 2609tubaqyewiqywoi7.pro xxxx-78.com electriceagleinnovations.club lacartalaparradequesa.com gannina.icu toptogel.online cumywui9.pro hudsong.dev bebancapremium.app web.sexnhanh.co www.euqueroserdev.com euqueroserdev.com fewrfewr.top fullxxxindian.com 224224996.com voluspait.shop cryptocrawl.care www.artesianwatev.com hasnaa-abaya.com torrentbam64.com laoyebaohu.com raunchymilfioky.com cxawrelessly-sting.shop asobahis35.com eyotsfirst.com adl.shopsision.sbs mx9crl.cyou mesquitefoodies.com www.mesquitefoodies.com spitsnesker.com sallysbgy.com ddnfotoevideo.it unbebe.top defi-swaps.com lifestylebooklet.com generic4all-global.com crediteonline.ru slwsrv.cloud ronaldoslot.top houstonrocketsclub.com www.protipsarena.com olutqas.online worldwznxr.sbs 8fwptuzyb9.monster newclothing-discount.com www.ceaseless-muscle.shop www.f5escapes.com tohmatsuco.jp smatsikrisupa.tk betballl90.com test.piprahost.com meihaoshenghuo691.com smarti-yemen.com thuglifetoken.fun spelabautoparts.shop khoaccgameff.com jbmhy.top ceaseless-muscle.shop gridscrape.xyz agreeablecamel.com stoneridge360consultants.com jack-mangelsdorf.com bandarjudi4d.site diamond-ring-us-44067.today protipsarena.com foolishly-assist.shop 82009199.com www.82009199.com infochker.com admin.astorialeads.com brawiththong.com hbzzkhd0nu.com app2.sunnyclouds.io cosclearance.com starsecurityky.com ketoancasac.com swipeh.xyz biocornflakebox.com papethamali.gq buyyprostadine-now.store bradava.com alnafi.co.uk chat-gpt-weathered-math-6225.bione-camponas.workers.dev ui-kit-prod.sd-app.net b88.id www.b88.id euroapartment.info www.firehousesteaklemonade.com earthsafe.sg shccm.ca talkmarine.top jectplaciveqcrit.ga knockaround.shop best-rosacea-treatment.com fenixiptv.shop franklincoveyevents.ch cashjyflee.life freddysdoehetzelfmarkt.nl barong4d.xyz wijaya88a.com freshhupdate.site iesapo.jp listarapp.com prostitutki-escort-bordeli.online rare-things.club green-wave-557a.louieadds1253.workers.dev eldoradocasino-oaq.top dusty-jeans.club acd.slwsrv.cloud wyyxpbf6223.com 22misterxcasino.com trojansewingmachines.com 6o42kh.sbs koppamesiting.tk izakayaninki.org firehousesteaklemonade.com hello.zwmu.top prevalda.fun wpthmelm.cf activ-ketodietakjsy157.cloud zquiet-homelifegarden.com ayuntamiento-seguradelasierra.com kibblenco.com lvbargain.top www.scubapuravida.com billowing-darkness-883c.vgvevf.workers.dev h.ham7474.workers.dev infoney.co p9.ham7474.workers.dev sodephomnay.org www.steamvacgreen.com poolmining.org immobilienservice-osnabrueck.de www.saim.uk saim.uk solicitacredicash.online supremecarl.com www.supremecarl.com secuprolog.life signup.astorialeads.com newufa365s.com regiscptt.com e0nqt.info compherguiponcquros.gq bitter-shadow-7dc0.fomij197814034.workers.dev shy-mountain-41dd.fomij197814034.workers.dev mute-pine-00b6.fomij197814034.workers.dev quiet-resonance-23df.fomij197814034.workers.dev wiki.ordersnipe.com mysub.freeworld4us.workers.dev p5.ham7474.workers.dev www.piprahost.com piprahost.com securepay.piprahost.com control.piprahost.com bank-account-option.life steamvacgreen.com 4tube.eu.org goeazygo.com p4.ham7474.workers.dev p3.ham7474.workers.dev p2.ham7474.workers.dev wandering-wildflower-30cf.ham7474.workers.dev p.ham7474.workers.dev cktwdm.id lsps.eu.org suprtrends.com bullkingsilasa.tk marys-txt.com betterbusinesselectronics.com eqtesthub.com md460.xyz www.goldsl.com canarysurpriseanddelight.com goldsl.com www.livelonginfra.com 8995taxform.com ketolynag.cloud ordersnipe.com www.ordersnipe.com ufabet168.site relay.ktnfm.com funnymarketingfunnels.com iliya.elyaagh.online well-clearvision.site forgivzxt.buzz czwds.cn www.wmbline.com g05online.top blue-moon-0d17.someonu19492020.workers.dev abcd.ham7474.workers.dev scubapuravida.com mallan.biz chenfuwei.xyz www.chenfuwei.xyz www.sellingreselling.com 099marsbahis.com 616tl.top morando.cl fashioninc.live www.fashioninc.live erorefih.tk tiorilesra.gq sd-front-review2.sd-app.net lyricist.shop bremenlocksmith.us pestcontrol-lakewood.com nhhmv212.com condicionadorseda.beauty goritsfighting.ru 69xx508.xyz olhonomundo.com.br jqf-jerusalem.org freenode2.ham7474.workers.dev freenode.ham7474.workers.dev newtaiwan.top migratesarcastic.top chammaverre.tk replit.ham7474.workers.dev me.ham7474.workers.dev ir.ham7474.workers.dev hm.ham7474.workers.dev sharegeckoboard.com whichtopest.space arian.arian-bezdoode13771998pv.workers.dev art-teasers.ru kirebozorg.javid.website kamran-hoseyni-907.kamranhoseyniduty0990.workers.dev app.linply.com newscounter-moveattaint.click alphacentaurus.xyz satzkerbdont.tk vwww-looksrare.com degejidoer.cyou stuartsutcliffe.org level7studio.com genbaza.com www.10086wtyd.com 10086wtyd.com ktnfm.com jprpaintingsnc.com vienotsacons.tk www.exchangerate-api.net jbuw.link herowealth.net www.vivopricepakistan.com auburngreenlandscaping.com xtransform.me freenode.freeworld4us.workers.dev informed-delivery513.shop best-minecraft.org geminicompetitions.co.uk astorialeads.com www.astorialeads.com pizzatapioca.za.com beng.fdmjhasda.workers.dev khatronkekhiladi.vip m.fdmjhasda.workers.dev fashionsgh.com livelonginfra.com smalecsnooting.site 1stvl.ru a.gtool.fun www.devlateral.com fotiwatlo.tk hlsrhmp.com lonagustinasy.cyou onlinedatingcoin.com intro-tablet.shop volilife.com saskliteracy.ca polandapp.website url-shortener-stage.sd-app.net url-shortener-prod.sd-app.net api-stage.sd-app.net aatpk.autos webdoc.com.tr permabeautyworks.com worlgoodpawhacnorthwol.tk 2023ketbaynowaedatek.cyou livelopontosacumulados.com hmawei.com partnership-giveaway.com www.vibratorsgear.com vibratorsgear.com ic2888.org presdisgmat.tk og1279.net ketohgfchfgcjg.cyou www.ibmseo.net www.t44b.info fondlarkstalweb.tk newledeno.ga voip-portal.ch vl8xv65central5lzowii3.sbs www.bonusfox24.com bonusfox24.com juliannenathanaeltha.cyou www.nentuin178.click j3dongsc21j1.com api.alphacentaurus.xyz playstart.site pasartoto.org thegsanddertio.tk cell-phones-browsers.life komplat.by holismallpro.cf www.stablecouch.buzz irilmatilessfoots.tk www.tax-verification.ma nentuin178.click rigcriativo.tech www.medifams.com jordanypippen.com lapericana.com.ar www.smilearts.com.sg 365gygb.com spartanrecording.com riwolfgolddeda.tk nothycomppocol.tk enrisreda.cf mwp5z.space leugueta.tk quesimplighfortgran.tk uq14ufpok.rest www.springaidbank.com scutiniram.gq top-casinoru.win pro-patron.tk vivopricepakistan.com skidetulim.ml twwyj.cc app.sunnyclouds.io www.actualizacion-rentas.com cdn.694846.xyz 694846.xyz expertshare.tk wwwamericanmuscle.com onvlmcu.us coroadsale.shop nimenbecoolo.cf huwrong.site kramp-cc.online www.persocom.com.br ined.fdmjhasda.workers.dev docg.fdmjhasda.workers.dev mori.fdmjhasda.workers.dev awzry.com www.safwrite.blog safwrite.blog sia1b4.buzz dtrend.uk atticgr.cyou arcaneray.gives linply.com activist.center www.rem-nevada.com rlgb.info img.saborosos.com.br mudstenbest.ml coomerparty.gives wmbline.com 49d4ps.tokyo yorandebont.com yv1.xyz 0ht6p.shop emenotblacceislop.cf 5hvijm.shop al6cx6.shop www.saborosos.com.br www.gavithahost.co.id bxdla.shop compcoleticachil.ga 448995.com kzemketoatnf.click mibwfs.tokyo valsalif.ga persocom.com.br dorsetlandscapingandgardening.co.uk www.adultsexdollstore.com adultsexdollstore.com devlateral.com inlisea.cf medifams.com frosty-dawn-fbca.rayedpg.workers.dev bestmovies.my.id weneva.xyz 9nynip1.shop propsucompzarmasc.tk trevisctic.gq portionindexpan.com saborosos.com.br dwggrjen.ml titciconti.tk springaidbank.com shopforfree.shop allboyallgirl.net siovedove.tk venusbeti.com metroappliancerepairwebstertx.com nspiyahdlife.com qnnervjx.tk moviezadda-kan.nitroranger1432.workers.dev bac-hex.com itdev.social cumbose.top www.apptis.or.id www.ee88.cm shrill-morning-0c02.qeyamdramas24905.workers.dev ex-722.com t.meadd.net tzzxzcsadsfs533.buzz 1npa.shop f5escapes.com maisultelean.tk amlabesch.gq pracetetasalblog.tk 0wt2.shop gerbunklifin.cf unconteca.gq www.dakineskis.com nft498l.shop hungmentmerlindfoot.ml ecexrilirob.tk ravry.com birthtrotvent.tk slumdenpnpamagphesa.ga nhaphovanminh.com stannemindwinnombne.tk bitcoincircuitonline.com cnnseashore.xyz leoberpbercminstysua.ga disctingthesbeyquigrad.tk manfby.com y9at.shop teotebarre.tk bitlender.xyz dallasinsurancenearme.com nemarketingdesign.com cameraling.space withddicarfaitorsbi.ml aleabscen.gq www.gunluk.uk longsponge.cn tangen.nu www.tangen.nu esarvou.ga tg.chingsky.workers.dev steafvedelila.ga www.mountainwestdentalspecialists.com mountainwestdentalspecialists.com 200bonusonline.com up.mouson.im ruzcs.vip gay.chingsky.workers.dev citygame79.fun meimoer.net fitiphocinenc.cf guiprestailowevan.cf redpanther.co.ke eecmeficmirtgydroox.bar www.isotec.cnt.br paddbroodapininin.tk littlefroggy.ru magpuhalbenzti.tk taochuanglian.com nershealthpriminin.tk slumdabtaseatili.tk abprebemaren.ml cheedenighrockness.tk stablecouch.buzz nedracarole.shop unifi-cloudflare-ddns.poterpan.workers.dev school.jiumeng6.top aqtqfb.shop 5299yy.com deld.bar dedyshke.online www.gotintopc.xyz.cdn.cloudflare.net angelvsdemon.ro esugekaqasin.tk t44b.info radio.movezenlogistiek.co.uk development.movezenlogistiek.co.uk gadgetsleadingcenters.com flawless.marketing www.xiqnc.com pgfhqpco.ga cloud.movezenlogistiek.co.uk limited.movezenlogistiek.co.uk
Malware Detected on Host
Count: 9 cb9a7c0e48263a23f681c42f284bdcba538253c03cbba3a837fef490d30c656e 6420e65b8352e0658b24d86d521c1eba2fe855f152f21ce60c516a490d86db04 3bcf351c45b185567672bfc1fa2e2d7e88daaca5f0db1f8edee2694025cf1729 7110f5ba7f51be32b029ab9704ba025587045ff5ae3d70b50c01ef4b039576f8 34bb7de68ae7f7ce9202f28f66c7b8b205bbaacb05d0ac565527f55117e04682 2d21ffd087346917668a0a424138c2ebbc60efa1162fd499c2edc6b85c6cf281 a67cc47030a67a9f6bad704da80c629cf270eedf3aee309e0cb0a1ef30f7a50b 898046056f632515a0b36b5fd0e5ecb855ed2c4d307f4bf7512f7ea9f0f98f84 d9160a022d4c00e2b8b9e49eee2137f131ba57b1dc29044a659ff96c16903edb
Open Ports Detected
2082 2083 2086 2087 443 80 8080 8443 8880
Map
Whois Information
- NetRange: 104.16.0.0 - 104.31.255.255
- CIDR: 104.16.0.0/12
- NetName: CLOUDFLARENET
- NetHandle: NET-104-16-0-0-1
- Parent: NET104 (NET-104-0-0-0-0)
- NetType: Direct Allocation
- OriginAS: AS13335
- Organization: Cloudflare, Inc. (CLOUD14)
- RegDate: 2014-03-28
- Updated: 2021-05-26
- Comment: All Cloudflare abuse reporting can be done via https://www.cloudflare.com/abuse
- Ref: https://rdap.arin.net/registry/ip/104.16.0.0
- OrgName: Cloudflare, Inc.
- OrgId: CLOUD14
- Address: 101 Townsend Street
- City: San Francisco
- StateProv: CA
- PostalCode: 94107
- Country: US
- RegDate: 2010-07-09
- Updated: 2021-07-01
- Ref: https://rdap.arin.net/registry/entity/CLOUD14
- OrgRoutingHandle: CLOUD146-ARIN
- OrgRoutingName: Cloudflare-NOC
- OrgRoutingPhone: +1-650-319-8930
- OrgRoutingEmail: noc@cloudflare.com
- OrgRoutingRef: https://rdap.arin.net/registry/entity/CLOUD146-ARIN
- OrgAbuseHandle: ABUSE2916-ARIN
- OrgAbuseName: Abuse
- OrgAbusePhone: +1-650-319-8930
- OrgAbuseEmail: abuse@cloudflare.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2916-ARIN
- OrgNOCHandle: CLOUD146-ARIN
- OrgNOCName: Cloudflare-NOC
- OrgNOCPhone: +1-650-319-8930
- OrgNOCEmail: noc@cloudflare.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/CLOUD146-ARIN
- OrgTechHandle: ADMIN2521-ARIN
- OrgTechName: Admin
- OrgTechPhone: +1-650-319-8930
- OrgTechEmail: rir@cloudflare.com
- OrgTechRef: https://rdap.arin.net/registry/entity/ADMIN2521-ARIN
- RNOCHandle: NOC11962-ARIN
- RNOCName: NOC
- RNOCPhone: +1-650-319-8930
- RNOCEmail: noc@cloudflare.com
- RNOCRef: https://rdap.arin.net/registry/entity/NOC11962-ARIN
- RAbuseHandle: ABUSE2916-ARIN
- RAbuseName: Abuse
- RAbusePhone: +1-650-319-8930
- RAbuseEmail: abuse@cloudflare.com
- RAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2916-ARIN
- RTechHandle: ADMIN2521-ARIN
- RTechName: Admin
- RTechPhone: +1-650-319-8930
- RTechEmail: rir@cloudflare.com
- RTechRef: https://rdap.arin.net/registry/entity/ADMIN2521-ARIN