159.223.98.168

Classification: Malicious

159.223.98.168 is a malicious IP address. Reported by 4 threat sources, last seen 2026-08-31. Network: AS14061 Digitalocean, LLC.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.de 2026-08-31 14:00:14 2026-08-31 14:00:14 attacker malicious-activity
Unauthorized scanning of hosts Blocklist.net.ua 2024-12-24 18:56:16 2025-02-18 22:36:51 malicious-activity
Malicious Host CIArmy 2024-12-22 23:02:30 2024-12-25 23:35:20 malicious-activity
Malicious Host AbuseIPDB 2024-12-22 23:08:13 2024-12-24 06:59:49 malicious-activity
Suspicious Host AbuseIPDB 2024-08-07 23:13:10 2024-08-07 23:13:10 anomalous-activity

Tags

abuse ssh bruteforce bot

Whois information

AS name
AS14061 Digitalocean, LLC
AS registry
arin
AS date
2020-11-03 00:00:00
AS CIDR
159.223.96.0/20
CIDR
159.223.0.0/16
Registrant
Digitalocean, LLC
Address
101 Ave of the Americas FL2
City
North Bergen
State
NJ
Postal code
07047
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected]
First indexed
2024-08-08 03:14:17
Last updated
2026-08-31 14:00:14

Malicious IPs in the same CIDR

159.223.108.82 159.223.106.183 159.223.108.232 159.223.98.71 159.223.103.30 159.223.101.30 159.223.98.168 159.223.101.183 159.223.101.248 159.223.98.243 159.223.106.64 159.223.111.185 159.223.103.141 159.223.98.198 159.223.105.197 159.223.100.146