159.89.118.21
Classification: Malicious
159.89.118.21 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-05. IoC context and downloadable threat intel on Maltiverse.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-05-04 12:47:31 | 2026-09-05 17:00:43 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 17:04:14 | 2026-09-04 17:04:14 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-06-07 03:49:07 | 2026-06-07 03:49:07 | anomalous-activity | |
| Malicious Host | AbuseIPDB | 2026-05-03 22:40:52 | 2026-05-05 09:56:42 | malicious-activity | |
| Unauthorized scanning of hosts | Blocklist.net.ua | 2020-12-25 09:22:47 | 2021-04-11 10:31:32 | malicious-activity | |
| Malicious Host | CIArmy | 2021-04-04 11:12:41 | 2021-04-09 02:50:47 | malicious-activity | |
| Phishing National Bank of Canada | OpenPhish | 2018-07-19 11:15:04 | 2018-07-19 11:15:04 |
Tags
phishing abuseWhois information
- AS registry
- arin
- AS date
- 2017-07-07 00:00:00
- AS CIDR
- 159.89.112.0/20
- CIDR
- 159.89.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- New York
- State
- NY
- Postal code
- 10013
- Country
- CA — Canada 🇨🇦
- Contact email
- [email protected], [email protected]
- First indexed
- 2018-07-19 11:15:04
- Last updated
- 2026-09-05 17:00:43
Malicious IPs in the same CIDR
159.89.123.203 159.89.121.75 159.89.126.13 159.89.115.108 159.89.124.112 159.89.115.219 159.89.126.142 159.89.127.165 159.89.114.95 159.89.117.170 159.89.118.173 159.89.119.139 159.89.118.21 159.89.125.248 159.89.116.161 159.89.116.120 159.89.117.68 159.89.112.228 159.89.114.134 159.89.125.102 159.89.117.122 159.89.112.232 159.89.113.189 159.89.125.65 159.89.123.44