165.22.121.56
Classification: Malicious
165.22.121.56 is a malicious IP address. Reported by 8 threat sources, last seen 2026-09-13. Network: AS14061 Digitalocean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Hosting provider — Shared hosting infrastructure.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Unauthorized scanning of hosts | Blocklist.net.ua | 2021-02-09 10:55:17 | 2026-09-13 17:03:29 | attacker malicious-activity | |
| SSH Attacker | Blocklist.de | 2020-09-04 03:35:46 | 2026-04-25 10:10:36 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2025-07-27 22:45:27 | 2025-07-31 01:13:35 | anomalous-activity | |
| Malicious Host | CIArmy | 2025-07-27 14:20:39 | 2025-07-27 21:59:05 | malicious-activity | |
| Malicious host | Darklist | 2020-09-05 04:40:45 | 2024-02-14 11:15:22 | malicious-activity | |
| Known attacker | Blocklist.de | 2021-10-04 04:49:26 | 2022-05-06 00:45:21 | malicious-activity | |
| Malicious Host | HoneyDB | 2020-09-12 00:00:00 | 2021-05-06 00:00:00 | malicious-activity | |
| SIP Attacker | Blocklist.de | 2021-01-05 10:28:31 | 2021-03-27 09:27:38 | malicious-activity | |
| ET COMPROMISED Known Compromised or Hostile Host Traffic UDP | Emerging Threats | 2020-11-10 04:15:48 | 2021-02-24 14:24:26 | malicious-activity | |
| ET COMPROMISED Known Compromised or Hostile Host Traffic TCP | Emerging Threats | 2020-11-10 04:15:47 | 2021-02-24 14:24:24 | malicious-activity | |
| SSH Attacker | Telefonica CO SOC | 2020-10-01 00:58:10 | 2021-01-23 10:58:14 | ||
| SSH Attacker | Blocklist.net.ua | 2020-10-06 03:44:46 | 2020-10-06 08:31:44 |
Tags
apache attacker script kiddies strong+attacker bot ssh bruteforce abuse sipWhois information
- AS name
- AS14061 Digitalocean, LLC
- AS registry
- arin
- AS date
- 2018-10-16 00:00:00
- AS CIDR
- 165.22.112.0/20
- CIDR
- 165.22.0.0/16
- Registrant
- Digitalocean, LLC
- Address
- 101 Ave of the Americas FL2
- City
- London
- State
- NY
- Postal code
- SW1Y 5
- Country
- GB — United Kingdom 🇬🇧
- Contact email
- [email protected], [email protected]
- First indexed
- 2020-09-04 03:35:46
- Last updated
- 2026-09-13 17:03:30
Malicious IPs in the same CIDR
165.22.121.56 165.22.116.110 165.22.117.89 165.22.115.137 165.22.114.246 165.22.117.163 165.22.119.65 165.22.123.249 165.22.118.79