AbuseIPDB » 159.89.136.52
159.89.136.52 was found in our database!
This IP was reported 692 times. Confidence of Abuse is 100%: ?
| ISP | DigitalOcean, LLC |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS14061 |
| Domain Name | digitalocean.com |
| Country | ๐บ๐ธ United States of America |
| City | Santa Clara, California |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 159.89.136.52:
This IP address has been reported a total of 692 times from 165 distinct sources. 159.89.136.52 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ซ๐ท Fasetech |
SecLedge detected suspicious activity. Score: 101.04. Sensor: T-Pot.
|
Brute-Force | ||
| ๐ซ๐ท Fasetech |
SecLedge detected suspicious activity. Score: 101.04. Sensor: T-Pot.
|
Brute-Force | ||
| ๐ณ๐ฑ StopAbuse |
tcp/2078
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-05-15 16:53:49 UTC Unauthorized activity to TCP port 1433. SQL
|
Port Scan | ||
| ๐บ๐ธ Cyber Crusader |
Hundreds of Attempts (at least) to Connect to and Access Firewall Ports
|
Port Scan Hacking Brute-Force | ||
| ๐ซ๐ท Fasetech |
SecLedge detected suspicious activity. Score: 101.04. Sensor: T-Pot.
|
Brute-Force | ||
| ๐บ๐ธ MPL |
tcp/631 (2 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/623 (2 or more attempts)
|
Port Scan | ||
| ๐ซ๐ท Little Iguana |
trying to access non-authorized port
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp ports: 161,1993 (2 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/8443 (2 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/998 (2 or more attempts)
|
Port Scan | ||
| ๐ณ๐ฑ donarev419 |
Port scan detected on port 17 (connection without data transfer)
|
Port Scan | ||
| ๐จ๐ณ ThreatBook.io |
|
Web App Attack | ||
| ๐บ๐ธ kosada.com |
Web vulnerability probing: /auth.html (bogus vhost/SNI)
|
Web App Attack |
Showing 1 to 15 of 692 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ