139.59.175.247
Classification: Malicious
139.59.175.247 is a malicious IP address. Reported by 8 threat sources, last seen 2026-08-25. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | HoneyDB | 2026-08-25 00:00:00 | 2026-08-25 00:00:00 | attacker malicious-activity | |
| Proxy | IPWhois.io | 2026-08-24 07:14:31 | 2026-08-24 07:14:31 | anonymization proxy | |
| Proxy | FireHOL | 2023-01-02 02:12:21 | 2025-10-07 08:36:19 | anonymization | |
| Log4j Attacker | CCN-CERT | 2021-12-20 09:08:56 | 2022-02-08 03:35:14 | malicious-activity | |
| Malicious site | Hybrid-Analysis | 2021-12-20 23:01:04 | 2021-12-20 23:01:04 | ||
| Unknown malware | ThreatFox Abuse.ch | 2021-12-14 00:06:07 | 2021-12-16 00:08:30 | malicious-activity | |
| Log4j Callback | Maltiverse Research Team | 2021-12-14 14:24:37 | 2021-12-14 14:24:37 | ||
| Anonymizer | Maltiverse Research Team | 2020-11-22 00:08:49 | 2021-05-23 13:11:11 | anonymizer | |
| Anonymizer | Maltiverse | 2018-11-24 07:54:36 | 2018-11-24 07:54:36 |
Tags
anonymization log4j cve-2021-44228 rogue-ldap port:1099 port:1389 logj4 anonymizerWhois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- apnic
- AS date
- 1990-06-27 00:00:00
- AS CIDR
- 139.59.160.0/20
- CIDR
- 139.59.0.0/17, 139.59.128.0/18, 139.59.192.0/19, 139.59.224.0/20, 139.59.240.0/21, 139.59.248.0/22, 139.59.252.0/23, 139.59.254.0/24, 139.59.255.0/25, 139.59.255.128/26, 139.59.255.192/27, 139.59.255.224/28, 139.59.255.240/29, 139.59.255.248/30, 139.59.255.252/31, 139.59.255.254/32
- Registrant
- DigitalOcean, LLC
- Address
- 101 Avenue of the Americas, 10th Floor, New York NY 10013
- City
- London
- Postal code
- SW1Y 5
- Country
- GB — United Kingdom 🇬🇧
- Contact email
- [email protected]
- First indexed
- 2018-11-24 07:54:36
- Last updated
- 2026-08-26 22:02:30
Malicious IPs in the same CIDR
139.59.163.93 139.59.171.241 139.59.167.70 139.59.173.98 139.59.170.85 139.59.175.247