52.218.1.4 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 52.218.1.4 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 20/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Contained within other IP sets: hphosts_emd, lashback_ubl, nullsecure
- Country: Ireland
- Network: AS16509 amazon.com inc
- Noticed: 1 times
- Protcols Attacked: SSH
- Passive DNS Results: www.disfrutalicor43.com sonos-brochure.com maza-play.live diegopascualantolinoscv.com wellington-real-estate.net exczone.com krikbow.xyz cricketbook.io jbcricket.live compareit4me.com mainstreak-engr.com skyip88.com camerazoom1.com ingalotrolado.com ministryoftrot.com rg.pt batidospuleva.es masterexch.asia xsightfuturesolutions.com ofertasenviocanarias.com buntbrain.com luvirtual.co.uk sky-fair.website sky-exchange247.com sky-fair.site icebook365.com walletid365.com 15309430.com marutibook.asia marutibook.com mysports247.com 6ball.com concirrusquest.com digital-services.pl musvc6.net 2f.dk awsbot.com fieldcode.ch mazaplay.fun oceanbook1.com usabilla.net luminairebroker-uat.net zerogravity.cloud awanevd.xyz www.salzio.com monzo.bingo test.alrahmangroup.co.uk skyexchange.store lnexch.xyz skyexchange247.com skyexchange.biz gurubhai111.com skyfair.club kuber777.com skyexch247.online laserbook.pro matchcric.xyz king333.bet anmolexch.xyz n-a-w.com obobko.com darisan.com inb888.xyz MSAresearchstudy.com s4b.be www.alexdezwart.nl glpg.com srexch.com planetcruise.com iglu.com mostacha.com landmarkanalytics.co.uk sgexch247.com www.decision.tech skyfair.blue kanhasky.com jobisjob.co.in suninplay.com ahgvn.com www.reefflare.io circle777.com www.vtechlife.com skyexchanges.com alessandropolidori.com files.amnesty.org dlph.io vivoenvivo.info www.jamiehargreaves.co.uk smashup.vip helpdesk.marlin.ab-inbev.com tolkiensociety.org valassis.eu underscoreconsulting.com edificio-hospital.com sport85.eu amaxcrick.xyz masterexch.com wwa.parwise.de owlapp.co im-ignv1.ziffdavisinternational.com foxse.co.uk modomail.modomoto.de adevinta.group dailybeat.net data.kakapo.co whatoil.com mib.isdi.es williams.direct bkulruns.xyz oulunuudiskohteet.fi ads.quotendo.de fallback.playtech-installer.com chapelstudios.uk verdictfinancialservices.com bitsdynamics.com wwa.click-and-date.de players.simplestream.com stock.buyyourcar.co.uk amaxcrick.cc euromaidanchronicles.info morrison-enterprises.co.uk skyexch11.com fieldcode.info vend.link scoringsklubb.no producttunnel.com matriset.fi s3-website-eu-west-1.amazonaws.com
Open Ports Detected
Map
Whois Information
- NetRange: 52.192.0.0 - 52.223.191.255
- CIDR: 52.223.0.0/17, 52.220.0.0/15, 52.216.0.0/14, 52.222.0.0/16, 52.223.128.0/18, 52.208.0.0/13, 52.192.0.0/12
- NetName: AT-88-Z
- NetHandle: NET-52-192-0-0-1
- Parent: NET52 (NET-52-0-0-0-0)
- NetType: Direct Allocation
- OriginAS:
- Organization: Amazon Technologies Inc. (AT-88-Z)
- RegDate: 2015-09-02
- Updated: 2020-09-24
- Ref: https://rdap.arin.net/registry/ip/52.192.0.0
- OrgName: Amazon Technologies Inc.
- OrgId: AT-88-Z
- Address: 410 Terry Ave N.
- City: Seattle
- StateProv: WA
- PostalCode: 98109
- Country: US
- RegDate: 2011-12-08
- Updated: 2022-09-30
- Comment: All abuse reports MUST include:
- Comment: * src IP
- Comment: * dest IP (your IP)
- Comment: * dest port
- Comment: * Accurate date/timestamp and timezone of activity
- Comment: * Intensity/frequency (short log extracts)
- Comment: * Your contact details (phone and email) Without these we will be unable to identify the correct owner of the IP address at that point in time.
- Ref: https://rdap.arin.net/registry/entity/AT-88-Z
- OrgRoutingHandle: IPROU3-ARIN
- OrgRoutingName: IP Routing
- OrgRoutingPhone: +1-206-555-0000
- OrgRoutingEmail: aws-routing-poc@amazon.com
- OrgRoutingRef: https://rdap.arin.net/registry/entity/IPROU3-ARIN
- OrgTechHandle: ANO24-ARIN
- OrgTechName: Amazon EC2 Network Operations
- OrgTechPhone: +1-206-555-0000
- OrgTechEmail: amzn-noc-contact@amazon.com
- OrgTechRef: https://rdap.arin.net/registry/entity/ANO24-ARIN
- OrgRoutingHandle: ARMP-ARIN
- OrgRoutingName: AWS RPKI Management POC
- OrgRoutingPhone: +1-206-555-0000
- OrgRoutingEmail: aws-rpki-routing-poc@amazon.com
- OrgRoutingRef: https://rdap.arin.net/registry/entity/ARMP-ARIN
- OrgNOCHandle: AANO1-ARIN
- OrgNOCName: Amazon AWS Network Operations
- OrgNOCPhone: +1-206-555-0000
- OrgNOCEmail: amzn-noc-contact@amazon.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/AANO1-ARIN
- OrgAbuseHandle: AEA8-ARIN
- OrgAbuseName: Amazon EC2 Abuse
- OrgAbusePhone: +1-206-555-0000
- OrgAbuseEmail: abuse@amazonaws.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/AEA8-ARIN