AbuseIPDB » 159.223.101.104
159.223.101.104 was found in our database!
This IP was reported 19 times. Confidence of Abuse is 87%: ?
| ISP | DigitalOcean, LLC |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS14061 |
| Domain Name | digitalocean.com |
| Country | ๐บ๐ธ United States of America |
| City | North Bergen, New Jersey |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 159.223.101.104:
This IP address has been reported a total of 19 times from 16 distinct sources. 159.223.101.104 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฌ๐ง gbzret4d |
Honeypot [uk-production01]: Empty payload (likely service probe); 27019 [14] TCP
|
Port Scan | ||
| ๐ฒ๐ณ Public CSIRT/CC of Mongolia |
Honeypot hit: Empty payload (likely service probe); 9203 [14] TCP
|
Port Scan | ||
| ๐ณ๐ฑ donarev419 |
Connection to port 10086 with data transfer.
Data preview:
|
Port Scan Hacking | ||
| ๐บ๐ธ drewf.ink |
[00:12] Port scanning. Port(s) scanned: TCP/9300
|
Port Scan | ||
| ๐ฌ๐ง gbzret4d |
Honeypot [uk-production01]: Unauthorized traffic (4 bytes of payload); 15672 [13] TCP
|
Port Scan | ||
| ๐ฆ๐ช abusiveIntelligence |
RDP connect attempt: Nmap Scanner
|
Brute-Force | ||
| ๐ซ๐ท TheHoneyPotter |
|
Port Scan | ||
| ๐ฉ๐ช guldkage |
Unauthorized connection attempt detected from IP address 159.223.101.104 to port 1434 (ger-03) [h]
|
Brute-Force Exploited Host | ||
| ๐ง๐ท somosbr |
[2026-06-20T08:03:13Z] Unsolicited scan from 159.223.101.104 to port 300/tcp
|
Port Scan | ||
| ๐ฉ๐ช _ArminS_ |
SP-Scan 31845:9300 detected 2026.06.20 09:51:48
blocked until 2026.08.09 02:54:35
|
Port Scan | ||
| ๐ฉ๐ช Axel |
[2026-06-20 05:52:38 UTC] Honeypot Elasticsearch Alt connection attempt | AXFRA HONEYPOT
|
Hacking | ||
| ๐ฉ๐ช dispaisyenterprises |
|
Port Scan | ||
| Anonymous |
Heralding honeypot: mysql on port 3306
|
Brute-Force | ||
| ๐จ๐ฆ dpinse |
Honeypot [honeypot-ca-sensor1]: MSSQL traffic (on 1433) without login credentials
|
Port Scan | ||
| ๐บ๐ธ drewf.ink |
[14:05] Port scanning. Port(s) scanned: TCP/5984
|
Port Scan |
Showing 1 to 15 of 19 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ