159.89.125.248

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
138 reports
65 reporters Β· latest 20 hours ago
ISP DigitalOcean, LLC
Usage Type Data Center/Web Hosting/Transit
ASN AS14061
Hostname(s) tor1-1.iodine.do.prod.binaryedge.ninja
Domain Name digitalocean.com
Country πŸ‡¨πŸ‡¦ Canada
City Toronto, Ontario

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 159.89.125.248

This IP address has been reported a total of 138 times from 65 distinct sources. 159.89.125.248 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 61 reports; Germany with 20 reports; Brazil with 10 reports. The most common categories in these recent reports were: Port Scan 99 times; Hacking 18 times; Brute-Force 17 times; Web App Attack 13 times; SSH 4 times; Other 12 times.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡©πŸ‡ͺ XYCoderXY
SSH/web brute-force & exploit scanning against lumerux.com (automated report).
Brute-Force SSH
πŸ‡ΊπŸ‡Έ donarev419
Port scan detected on port 4991 (connection without data transfer)
Port Scan
πŸ‡©πŸ‡ͺ Kejult
Port Scan
πŸ‡©πŸ‡ͺ Admins@FBN
FW-PortScan: Traffic Blocked srcport=53644 dstport=4588
Port Scan
πŸ‡ΊπŸ‡Έ MPL
tcp/2221 (2 or more attempts)
Port Scan
πŸ‡ΊπŸ‡Έ MPL
tcp/2152 (3 or more attempts)
Port Scan
πŸ‡§πŸ‡· noconex
Port Scan Brute-Force SSH
πŸ‡ΊπŸ‡Έ MPL
tcp/1433 (2 or more attempts)
Port Scan
πŸ‡ΊπŸ‡Έ donarev419
Port scan detected on port 1177 (connection without data transfer)
Port Scan
πŸ‡ΊπŸ‡Έ RAP
2026-09-19 09:31:54 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan Web App Attack
πŸ‡¦πŸ‡Ί PetePK
Probed 1 time(s): TCP/8443
Port Scan
πŸ‡ΊπŸ‡Έ MPL
tcp/8443 (4 or more attempts)
Port Scan
πŸ‡³πŸ‡± VMHeaven.io
Blocked by UFW [992/tcp] Source port: 57138 TTL: 239 Packet length: 44
Port Scan
πŸ‡ΊπŸ‡Έ COMPLEX
Unsolicited TCP traffic | Action: DROP | Port 789
Brute-Force
πŸ‡ΊπŸ‡Έ MPL
tcp/789 (2 or more attempts)
Port Scan

Showing 1 to 15 of 138 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡ΊπŸ‡Έ 195.184.76.111
πŸ‡΅πŸ‡° 161.248.202.88
πŸ‡³πŸ‡± 109.160.32.112
πŸ‡ΊπŸ‡Έ 108.48.115.64
πŸ‡ΉπŸ‡Ό 59.126.236.18
πŸ‡§πŸ‡· 35.247.234.98
πŸ‡ΊπŸ‡Έ 34.186.136.173
πŸ‡·πŸ‡΄ 2.57.122.238
πŸ‡°πŸ‡· 211.252.172.89
πŸ‡²πŸ‡½ 187.161.116.205
πŸ‡²πŸ‡Ύ 180.74.91.215
πŸ‡ΉπŸ‡Ό 59.126.133.217
πŸ‡΅πŸ‡° 59.103.239.69
πŸ‡ΊπŸ‡Έ 43.166.136.153
πŸ‡¨πŸ‡³ 218.94.115.164
πŸ‡°πŸ‡· 211.185.23.242
πŸ‡§πŸ‡ͺ 207.175.103.170
πŸ‡΅πŸ‡° 202.69.49.121
πŸ‡ΉπŸ‡³ 154.111.96.199
πŸ‡ΈπŸ‡¬ 118.139.165.208