159.223.111.185

Classification: Malicious

159.223.111.185 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-13. Network: AS14061 DigitalOcean, LLC.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Open proxy β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Proxy IPWhois.io 2025-02-17 06:27:00 2026-08-13 20:11:06 anonymization proxy
HTTP Spammer StopForumSpam.com 2026-05-16 17:03:18 2026-08-10 07:32:13 attacker malicious-activity
Proxy FireHOL 2023-01-02 05:06:12 2025-10-06 16:24:05 anonymization
SSH Attacker Blocklist.net.ua 2024-12-13 10:25:51 2025-05-08 19:58:30 malicious-activity
Suspicious Host AbuseIPDB 2025-01-26 08:35:31 2025-01-26 08:35:31 anomalous-activity
Malicious Host AbuseIPDB 2024-11-28 00:10:54 2024-12-27 14:44:55 malicious-activity
SSH Attacker Blocklist.de 2024-11-30 11:20:25 2024-12-08 11:14:38 malicious-activity

Tags

anonymization ssh bruteforce bot abuse

Whois information

AS name
AS14061 DigitalOcean, LLC
AS registry
arin
AS date
2020-11-03 00:00:00
AS CIDR
159.223.96.0/20
CIDR
159.223.0.0/16
Registrant
DigitalOcean, LLC
Address
101 Ave of the Americas FL2
City
North Bergen
State
NJ
Postal code
07047
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected], [email protected]
First indexed
2023-01-02 05:06:12
Last updated
2026-08-13 20:11:08

Malicious IPs in the same CIDR

159.223.106.183 159.223.108.232 159.223.98.71 159.223.108.82 159.223.103.30 159.223.101.30 159.223.98.168 159.223.101.183 159.223.101.248 159.223.98.243 159.223.106.64 159.223.111.185 159.223.103.141 159.223.98.198 159.223.105.197 159.223.100.146