159.89.133.107
Classification: Malicious
159.89.133.107 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS14061 Digitalocean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | CIArmy | 2026-07-26 20:02:04 | 2026-09-02 20:02:47 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-08-27 09:00:13 | 2026-08-28 09:00:16 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-08-27 07:00:14 | 2026-08-28 07:00:20 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-08-13 09:13:20 | 2026-08-27 09:12:40 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-08-13 09:13:18 | 2026-08-27 09:12:38 | malicious-activity | |
| Malicious Host | HoneyDB | 2026-08-06 00:00:00 | 2026-08-25 00:00:00 | attacker malicious-activity |
Tags
apache ddos rfi attacker login bruteforce bot joomla wordpressWhois information
- AS name
- AS14061 Digitalocean, LLC
- Registrant
- Digitalocean, LLC
- City
- San Jose
- State
- CA
- Postal code
- 95113
- Country
- US — United States 🇺🇸
- First indexed
- 2026-07-26 20:02:04
- Last updated
- 2026-09-02 20:02:47