18.218.102.4

Classification: Malicious

18.218.102.4 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS16509 American Registry for Internet Numbers.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Open proxy β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Proxy FireHOL 2026-03-08 08:27:16 2026-09-02 17:32:40 anomalous-activity anonymization proxy
Anonymizer FireHOL 2026-03-08 07:30:22 2026-09-02 16:36:47 anomalous-activity anonymization
DNS Server Public-dns.info 2022-07-14 03:01:57 2026-09-01 02:01:04 benign
Proxy IPWhois.io 2026-04-28 13:10:36 2026-08-08 21:15:12 anonymization proxy
Mail Spammer Barracuda 2022-07-14 06:30:50 2026-08-08 21:15:12 attacker malicious-activity

Tags

dns reflection anonymization

Whois information

AS name
AS16509 American Registry for Internet Numbers
AS registry
arin
AS date
2019-10-07 00:00:00
AS CIDR
18.216.0.0/14
CIDR
18.128.0.0/9, 18.32.0.0/11, 18.64.0.0/10
Registrant
American Registry for Internet Numbers
Address
410 Terry Ave N.
City
Columbus
State
OH
Postal code
43215
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected], [email protected], [email protected]
First indexed
2022-07-14 03:01:57
Last updated
2026-09-02 17:32:40

Malicious IPs in the same CIDR

18.216.115.47 18.216.18.110 18.219.237.91 18.219.214.117 18.219.215.163 18.219.117.36 18.219.111.118 18.219.88.51 18.218.153.148 18.218.102.4 18.218.83.12 18.218.35.143 18.218.17.231 18.217.161.168 18.217.104.190 18.217.97.194 18.217.53.137 18.217.40.206 18.217.10.106 18.216.241.0 18.216.236.26 18.216.203.195 18.216.90.0 18.216.74.131 18.216.59.54