172.64.144.179 Threat Intelligence and Host Information

Share on:

General

This page contains threat intelligence information for the IPv4 address 172.64.144.179 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Possibly Malicious Host 🟢 5/100

Host and Network Information

  • View other sources: Spamhaus VirusTotal

  • Country: United States
  • Network: AS13335 cloudflare
  • Noticed: 1 times
  • Protocols Attacked: Anonymous Proxy
  • Passive DNS Results: ydhoutai.com n5z3t109jz.cg.ink rr3v2u5u5lo65.cg.ink 0877zw5hx4vj.cg.ink bm69p.cg.ink js010bm-canary.cg.ink slot888.cg.ink k3y2l6.cg.ink 2.whoutai.com 4vpnbw14541.cg.ink w79s0.cg.ink g3h1p0l9813.cg.ink h5c021qu498c2.cg.ink uyytr6.cg.ink nnngame.cg.ink 4l00q1.cg.ink eu77dv5ef26d.cg.ink dl355v.cg.ink 16gug75t92.cg.ink 3eio2q.cg.ink 6o0kpm077p.cg.ink 476550868z4v.cg.ink 93c3b.cg.ink 0t25f.cg.ink n93q6p8vo0.cg.ink ldj4305g65.cg.ink nq5810.cg.ink 26q1mb4.cg.ink abrysvoenespanol.com jgbet6688.cg.ink i33hz66z65lhpjb2.cg.ink g6h1iut.cg.ink d8t3z0.cg.ink m688g.cg.ink 7v2u221.cg.ink j6s2w.cg.ink s76tqet87xo.cg.ink 9464ix5u995.cg.ink mxsm5151e.cg.ink 9ff020.cg.ink 551bet.cg.ink 2ww07361n186sk.cg.ink i99itg81268o.cg.ink 24pj2w3dij18b.cg.ink 6ulk1e0swp824407.cg.ink 79z65tk0.cg.ink z0prhx.cg.ink jbf5759.cg.ink mq441h9wk3g.cg.ink 9q16nu.cg.ink game12.cg.ink 7xc1oqlw5z.cg.ink lkw2p3f0x.cg.ink jtv5d.cg.ink 033nv3u8tcfn8ir.cg.ink 8536n2.cg.ink zpfum75fwpnz82r.cg.ink 081s7c.cg.ink 010175p27g1ge55.cg.ink 5zqsnsx4g.cg.ink r0u9ffd90ic.cg.ink 6829he.cg.ink 0x495g.cg.ink prod.novartis.co.za b8cc22yki.cg.ink py8xbe.cg.ink 9m70jx.cg.ink crt1q69.cg.ink 28130b.cg.ink w5m5n2.cg.ink j19v4u.cg.ink 0hsh1.cg.ink s9df69.cg.ink x565912j4w9j13n.cg.ink stg1.novartis.co.za abg.cg.ink sb978.cg.ink 8j77701111.cg.ink 36724io8b.cg.ink pg6677.cg.ink uwx25y3z341s.cg.ink 2hnow.cg.ink uj60nq8yy.cg.ink 12379cb.cg.ink o107mzv.cg.ink u8voz55cu0.cg.ink s5u3463.cg.ink d01wnb.cg.ink 15of6w.cg.ink oqv52.cg.ink 120ng1u1nsy6646.cg.ink 84l2q7o5.cg.ink qa.medhub.novartis.co.za i49dl562k65n.cg.ink 3fw68o.cg.ink dev.medhub.novartis.co.za s4up748wg1k.cg.ink qg58s.cg.ink pg5566.cg.ink sdjf91.cg.ink apidev.arlo.com 5dm7r7.cg.ink rzolftm8p2.cg.ink 80o316es5x79x.cg.ink prod.medhub.novartis.co.za 83hds4.cg.ink 1316k4.cg.ink p0tz54.cg.ink 6ks933.cg.ink 8dk8e0i.cg.ink 5nptqt.cg.ink 9001w81t9w.cg.ink irfshop.voky.com 69dgr3.cg.ink xc1x8rj0.cg.ink 7bkh70.cg.ink 12lr37red53e2o.cg.ink 8j7is2a0f.cg.ink m25b655wdjf69wy.cg.ink jgsbet.cg.ink t87in.cg.ink 8mbet.cg.ink 07g6se.cg.ink 9105izvn774d8.cg.ink 728r30m.cg.ink f1y31dveu5993om0.cg.ink 81ty.cg.ink 5iespd.cg.ink b605t9j.cg.ink 4017fa.cg.ink h51n6y67fc.cg.ink 9422m9350s.cg.ink 7d91h.cg.ink x38724bb93.cg.ink c7p6z.cg.ink 57y7150ys.cg.ink 13xc7j.cg.ink 10q794770u75j2o3.cg.ink tk6ped256vb4k1yp.cg.ink qi8ket4.cg.ink xf8d0o9r76ekz0.cg.ink i5z1e87m6u.cg.ink m74v2514w16.cg.ink t7yq5.cg.ink 9enfiqi40mhgw2rx.cg.ink nkg61nb3044fy.cg.ink 400jogo.cg.ink r85c816d.cg.ink f9n6n8.cg.ink 23c1770d102.cg.ink retail7.io 4h00p95v1x9b8p.cg.ink 1o3wz0.cg.ink 8y2lxfo3c.cg.ink hyi6770le7580z.cg.ink 4f5460.cg.ink tr7663ow6.cg.ink uat1.novartis.co.za 1z38711.cg.ink gamehh.cg.ink 4449w59n4jt.cg.ink t27282016.cg.ink tou1x0pe8.cg.ink gsb427dpvo08.cg.ink yb482c.cg.ink stk4i.cg.ink 71239z.cg.ink 4ezij2uvw74718.cg.ink skk20.cg.ink 5fb888.cg.ink 28u5prw4g2e7mh4t.cg.ink 6095tz9125.cg.ink www.legemiddelverket.no.cdn.cloudflare.net it.victoriassecret.com game71.cg.ink j28zybbpi904nq.cg.ink www.decathlon.co.uk.cdn.cloudflare.net www.routledgehandbooks.com www.victoriassecret.com victoriassecret.com sp.victoriassecret.com tiktenapp.com www.genteal.com devcrmext.rockfound.org ideahelvetia.ch domino.rockfound.org testiodl.rockfound.org iodl.rockfound.org officeonline.rockfound.org devcrm.rockfound.org devatlasweb.rockfound.org atlasweb.rockfound.org qas.sunsystemlights.com sunsystemlights.com dev.sunsystemlights.com emby.601313.xyz www.bdofma.com bdofma.com www.aemintakes.com hitchhikers.yext-cdntest.com contacts.finra.org media.sixtcarsales.de media.sixtcarsales.de.cdn.cloudflare.net

Malware Detected on Host

Count: 1 e8338967e54a9b63abf4547a07d1ea12410a9d0f998cb849ed2d9e8a52a7602e

Open Ports Detected

2052 2082 2083 2086 2087 443 80 8080 8443 8880

Map

Whois Information

  • NetRange: 172.64.0.0 - 172.71.255.255
  • CIDR: 172.64.0.0/13
  • NetName: CLOUDFLARENET
  • NetHandle: NET-172-64-0-0-1
  • Parent: NET172 (NET-172-0-0-0-0)
  • NetType: Direct Allocation
  • OriginAS: AS13335
  • Organization: Cloudflare, Inc. (CLOUD14)
  • RegDate: 2015-02-25
  • Updated: 2021-05-26
  • Comment: All Cloudflare abuse reporting can be done via https://www.cloudflare.com/abuse
  • Ref: https://rdap.arin.net/registry/ip/172.64.0.0
  • OrgName: Cloudflare, Inc.
  • OrgId: CLOUD14
  • Address: 101 Townsend Street
  • City: San Francisco
  • StateProv: CA
  • PostalCode: 94107
  • Country: US
  • RegDate: 2010-07-09
  • Updated: 2021-07-01
  • Ref: https://rdap.arin.net/registry/entity/CLOUD14
  • OrgNOCHandle: CLOUD146-ARIN
  • OrgNOCName: Cloudflare-NOC
  • OrgNOCPhone: +1-650-319-8930
  • OrgNOCEmail: [email protected]
  • OrgNOCRef: https://rdap.arin.net/registry/entity/CLOUD146-ARIN
  • OrgAbuseHandle: ABUSE2916-ARIN
  • OrgAbuseName: Abuse
  • OrgAbusePhone: +1-650-319-8930
  • OrgAbuseEmail: [email protected]
  • OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2916-ARIN
  • OrgRoutingHandle: CLOUD146-ARIN
  • OrgRoutingName: Cloudflare-NOC
  • OrgRoutingPhone: +1-650-319-8930
  • OrgRoutingEmail: [email protected]
  • OrgRoutingRef: https://rdap.arin.net/registry/entity/CLOUD146-ARIN
  • OrgTechHandle: ADMIN2521-ARIN
  • OrgTechName: Admin
  • OrgTechPhone: +1-650-319-8930
  • OrgTechEmail: [email protected]
  • OrgTechRef: https://rdap.arin.net/registry/entity/ADMIN2521-ARIN
  • RAbuseHandle: ABUSE2916-ARIN
  • RAbuseName: Abuse
  • RAbusePhone: +1-650-319-8930
  • RAbuseEmail: [email protected]
  • RAbuseRef: https://rdap.arin.net/registry/entity/ABUSE2916-ARIN
  • RTechHandle: ADMIN2521-ARIN
  • RTechName: Admin
  • RTechPhone: +1-650-319-8930
  • RTechEmail: [email protected]
  • RTechRef: https://rdap.arin.net/registry/entity/ADMIN2521-ARIN
  • RNOCHandle: NOC11962-ARIN
  • RNOCName: NOC
  • RNOCPhone: +1-650-319-8930
  • RNOCEmail: [email protected]
  • RNOCRef: https://rdap.arin.net/registry/entity/NOC11962-ARIN

Links to attack logs

anonymous-proxy-ip-list-2024-05-29 anonymous-proxy-ip-list-2024-05-28 anonymous-proxy-ip-list-2024-05-20 anonymous-proxy-ip-list-2024-05-24 anonymous-proxy-ip-list-2024-05-23 anonymous-proxy-ip-list-2024-05-19 anonymous-proxy-ip-list-2024-05-22 anonymous-proxy-ip-list-2024-05-25 anonymous-proxy-ip-list-2024-05-21 anonymous-proxy-ip-list-2024-05-26 anonymous-proxy-ip-list-2024-05-18