172.104.27.48
172.104.27.48 is a threat-intelligence indicator (IPv4 address) classified as Suspicious, corroborated across 7 independent feeds. It is aggregated and de-duplicated from many open and commercial threat feeds, with confidence scoring and decay over time.
Indicator facts
- Type
- IPv4 address
- Indicator
172.104.27.48- Classification
- Suspicious
- Confidence
- 100 / 100
- Corroboration
- 7 independent sources
- First seen
- Last seen
- Network (ASN)
- AS63949 — AKAMAI-LINODE-AP Akamai Connected Cloud
- Country
- SG
Tags
- sipquery
- vncrfb
- dnsversion
- attacker
- telnetlogin
- dnsrd
- smtpgreet
- scanner
Related CVEs (19)
- CVE-2026-7210
- CVE-2026-6019
- CVE-2026-4519
- CVE-2026-3644
- CVE-2026-3087
- CVE-2026-15308
- CVE-2025-13837
- CVE-2025-13836
- CVE-2025-13462
- CVE-2025-12781
- CVE-2025-12084
- CVE-2024-9287
- CVE-2024-7592
- CVE-2024-6232
- CVE-2023-27043
- CVE-2021-32052
- CVE-2020-29396
- CVE-2009-3720
- CVE-2009-2940
← Threat intelligence command center · Explore the indicator corpus