104.248.213.4

Classification: Malicious

104.248.213.4 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-23. Network: AS14061 DigitalOcean, LLC.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.
  • IoT threat β€” Seen attacking IoT devices.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host CIArmy 2026-05-16 16:02:22 2026-08-23 20:01:13 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-05-19 03:14:40 2026-08-22 09:09:24 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-05-19 03:14:37 2026-08-22 09:09:22 attacker malicious-activity
Port Scanner AbuseIPDB 2026-05-15 22:27:57 2026-08-11 09:44:12 anomalous-activity attacker malicious-activity reconnaissance
Hacking AbuseIPDB 2026-05-15 22:27:57 2026-08-10 14:01:36 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-06-03 02:14:51 2026-08-09 19:57:34 attacker malicious-activity
Bruteforce AbuseIPDB 2026-05-16 13:35:03 2026-08-09 19:57:34 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-05-19 22:47:27 2026-08-03 20:00:30 attacker malicious-activity
Mail Spammer AbuseIPDB 2026-07-13 15:21:44 2026-08-01 08:02:57 attacker malicious-activity
HTTP bot Blocklist.de 2026-07-12 08:00:08 2026-08-01 08:00:06 attacker malicious-activity
Malicious Host AbuseIPDB 2026-05-16 12:08:46 2026-08-01 06:30:12 attacker compromised malicious-activity
IoT Attacker AbuseIPDB 2026-06-07 03:33:23 2026-08-01 06:23:31 iot malicious-activity
HTTP Scrapper AbuseIPDB 2026-05-17 14:32:07 2026-07-31 17:20:45 anomalous-activity attacker malicious-activity
FTP Attacker AbuseIPDB 2026-07-09 07:06:36 2026-07-09 07:06:36 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-06-07 03:33:23 2026-06-07 03:49:31 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-05-16 23:05:20 2026-05-16 23:05:20 anomalous-activity
SSH Attacker Blocklist.de 2019-03-05 07:12:48 2019-03-15 07:13:03
Malicious host Darklist 2019-03-08 08:10:04 2019-03-08 08:10:04
SSH Attacker Telefonica CO SOC 2019-03-05 22:58:02 2019-03-06 10:58:03

Tags

ssh bruteforce bot attacker spam

Whois information

AS name
AS14061 DigitalOcean, LLC
AS registry
arin
AS date
2018-08-06 00:00:00
AS CIDR
104.248.208.0/20
CIDR
104.248.0.0/16
Registrant
DigitalOcean, LLC
Address
101 Ave of the Americas 10th Floor
City
San Jose
State
CA
Postal code
95113
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected]
First indexed
2019-03-05 07:12:48
Last updated
2026-08-23 20:01:13

Malicious IPs in the same CIDR

104.248.208.166 104.248.208.56 104.248.215.132 104.248.213.4 104.248.212.97