Searching 104.21.18.189

You still have 7/20 request limit available for today. Sign up to get higher limits.

Need higher request limit? Sign up for free!

SIGN UP IN SECONDS
No credit card required

Results for 104.21.18.189

malicious
104.21.18.189
IP
N/A
abuse final ransomware malware phishing ransomware scam spy spyware malicious attack stealer
Toronto
Ontario
N/A
43.6532°, -79.3832°
Cloudflare, Inc.
104.16.0.0/13

Malicious Reports for 104.21.18.189

Source Description Last Seen References
FireHol Host marked as abuser 10/27/2025 00:05:58 (UTC)
oisd.nl Malware detected with this host, including blocks ads, (mobile) app ads, phishing, malvertising, malware, spyware, ransomware, cryptoJacking, scam, etc. 06/13/2026 00:04:58 (UTC) 0ix.13125482.xyz,1fusionterra.forum,7xys.com,bavihua6.pro,bawivugugilez.oalroax.com,bestnew.click,blacklinknowss.co,bujikoluxasu.oalroax.com,busdoot.org,cmfirmme.net,dombatoto.net,dpd.fxqmvtrplx.club,egsorgu.org,favour-routed.cyou,fulls-capcl.blog,gavimunonada.oalroax.com,hfeyj.art,idos.lat,isar2024.com,juxepomuxisaga.oalroax.com,kebatu.oalroax.com,kukaj-to.wtf,lorqenavixi.com,mejigizefupu.oalroax.com,new.plnewinvest.com,nizalabudato.oalroax.com,nofenioradvisorynet.digital,photosolariousira.com,pinofugearesources.digital,pl-ogloszenie-9650492.top,portal.idos.lat,rollhub7.site,schoolmountain.xyz,shop.oizakaz.ru,slade.plnewinvest.com,sopraretal.pro,store.plnewinvest.com,tickneylayerco.click,timiw.oalroax.com,tlpooimiqxwrc.online,tonogipaxopason.oalroax.com,total76543.cfd,vajumena.oalroax.com,vigodaliduma.oalroax.com,vrgjsghsdhss.net,vww-facebook.com.vn,wetaniravom.oalroax.com,wipadidazam.oalroax.com,worldtrendingalert.pro,wygdrz.com,xujejovezaxud.oalroax.com,zebosanir.oalroax.com
Hybrid-Analysis Host has shown activity related to malware. 02/02/2026 16:00:11 (UTC) cert.geadroonu.co,vww-facebook.com.vn,zoosex.cc
CERT-PL Flagged as a malicious domain by Computer Emergency Response Team for Poland 01/27/2026 00:02:08 (UTC) 0ix.13125482.xyz,alebilet.pl-ogloszenie-9650492.top,allegro.pl-ogloszenie-9650492.top,allegrolokalnie.pl-ogloszenie-9650492.top,bavihua6.pro,new.plnewinvest.com,olx.pl-ogloszenie-9650492.top,pl-ogloszenie-9650492.top,rollhub7.site,slade.plnewinvest.com,sopraretal.pro,stake.plnewinvest.com,store.plnewinvest.com,worldtrendingalert.pro
Phishing Army Involved in phishing activities 01/27/2026 00:05:49 (UTC) 0ix.13125482.xyz,alebilet.pl-ogloszenie-9650492.top,allegro.pl-ogloszenie-9650492.top,allegrolokalnie.pl-ogloszenie-9650492.top,bavihua6.pro,new.plnewinvest.com,olx.pl-ogloszenie-9650492.top,pl-ogloszenie-9650492.top,rollhub7.site,slade.plnewinvest.com,sopraretal.pro,stake.plnewinvest.com,store.plnewinvest.com,vww-facebook.com.vn,webten-basvur-qnb.buradankatilin.com,worldtrendingalert.pro
Politie.nl Malware detected with this host, including domains and IPs used for phishing attacks and malware distribution. 12/15/2023 00:20:09 (UTC) blacklinknowss.co,egsorgu.org,vrgjsghsdhss.net
OpenPhish Detected phishing site: {action} 05/26/2026 00:09:28 (UTC) dpd.fxqmvtrplx.club,vww-facebook.com.vn,webten-basvur-qnb.buradankatilin.com
Abuse.ch ThreatFox Deemed malicious due to: Unknown malware 06/05/2026 07:03:24 (UTC) idos.lat,open-claw.co.com
Abuse.ch ThreatFox Deemed malicious due to: {action} 03/14/2026 22:39:04 (UTC) idos.lat
PhishStats Phishing URL 08/20/2024 11:14:32 (UTC) 0ix.13125482.xyz
Abuse.ch ThreatFox Deemed malicious due to: ClearFake 06/13/2026 17:47:39 (UTC) faogw.bankefile.com,llonnk.bankefile.com,xetxx.bankefile.com,ykjqdm.bankefile.com,zhfxkf.bankefile.com
Abuse.ch UrlHaus Url associated with malware and {action} 06/13/2026 17:48:06 (UTC) bjihnqisx.bankefile.com,faogw.bankefile.com,llonnk.bankefile.com,xetxx.bankefile.com,ykjqdm.bankefile.com,zhfxkf.bankefile.com
Abuse.ch ThreatFox Deemed malicious due to: Lumma Stealer 12/01/2024 08:31:05 (UTC) favour-routed.cyou

Ready to investigate?

SIGN UP IN SECONDS
No credit card required
footer-frame