104.248.153.103
Classification: Malicious
104.248.153.103 is a malicious IP address. Reported by 9 threat sources, last seen 2026-09-09. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker β Seen launching attacks over the Internet.
- Known scanner β Seen scanning hosts over the Internet.
- Open proxy β Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| HTTP Spammer | StopForumSpam.com | 2026-08-07 07:05:16 | 2026-09-09 07:24:09 | attacker malicious-activity | |
| Proxy | IPWhois.io | 2026-08-16 06:57:41 | 2026-08-16 06:57:41 | anonymization proxy | |
| HTTP Attacker | AbuseIPDB | 2026-08-04 15:15:03 | 2026-08-14 22:04:44 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-08-05 04:56:41 | 2026-08-14 05:34:56 | anomalous-activity attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-08-04 15:52:05 | 2026-08-14 05:34:56 | anomalous-activity attacker malicious-activity reconnaissance | |
| Bruteforce | AbuseIPDB | 2026-08-04 15:15:03 | 2026-08-12 01:45:02 | attacker malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-08-10 02:21:00 | 2026-08-11 12:42:15 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-08-05 21:59:20 | 2026-08-11 12:42:15 | attacker malicious-activity | |
| Known Attacker | AbuseIPDB | 2026-08-10 07:41:16 | 2026-08-10 07:41:16 | attacker malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-08-10 07:41:16 | 2026-08-10 07:41:16 | attacker malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-08-10 07:41:16 | 2026-08-10 07:41:16 | attacker malicious-activity | |
| Phishing | AbuseIPDB | 2026-08-06 04:58:10 | 2026-08-10 07:41:16 | malicious-activity phishing | |
| SQL Injection | AbuseIPDB | 2026-08-05 21:01:05 | 2026-08-10 07:41:16 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-08-05 15:07:00 | 2026-08-10 07:41:16 | attacker compromised malicious-activity | |
| Hacking | AbuseIPDB | 2026-08-04 14:59:55 | 2026-08-10 07:41:16 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-08-05 09:00:05 | 2026-08-06 09:00:07 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-08-05 07:00:05 | 2026-08-06 07:00:05 | attacker malicious-activity | |
| Proxy | FireHOL | 2023-01-01 11:46:27 | 2025-10-07 01:01:10 | anonymization | |
| Anonymizer | FireHol | 2022-12-30 00:28:03 | 2022-12-30 00:28:03 | anonymization | |
| Anonymizer | Maltiverse Research Team | 2020-11-21 20:11:30 | 2021-05-23 05:18:20 | anonymizer | |
| HTTP Spammer | Sblam | 2020-04-16 03:36:23 | 2020-04-16 03:36:23 | ||
| Anonymizer | Maltiverse | 2020-04-15 02:48:28 | 2020-04-15 02:48:28 |
Tags
anonymization anonymizer bot abuse apache ddos rfi attacker login bruteforce joomla wordpressWhois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- arin
- AS date
- 2018-08-06 00:00:00
- AS CIDR
- 104.248.144.0/20
- CIDR
- 104.248.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- Singapore
- State
- NY
- Postal code
- 628459
- Country
- SG β Singapore πΈπ¬
- Contact email
- [email protected], [email protected]
- First indexed
- 2020-04-15 02:48:28
- Last updated
- 2026-09-09 07:24:09
Malicious IPs in the same CIDR
104.248.151.93 104.248.158.38 104.248.152.33 104.248.153.103 104.248.151.220 104.248.148.122 104.248.153.158 104.248.146.235 104.248.158.135 104.248.157.207