The host at this IP address is currently being used to distribute malware.
Malware distribution located here:
The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
Malware botnet controller located at 18.104.22.168 on port 443 TCP:
$ telnet 22.214.171.124 443
Connected to 126.96.36.199.
Escape character is ‘^]’
Malicious domains observed at this IP address:
mytfyi01.top. 600 IN A 188.8.131.52
sahinx07.top. 600 IN A 184.108.40.206
sahmko16.top. 600 IN A 220.127.116.11
sahpfi06.top. 600 IN A 18.104.22.168