65.108.159.129

Classification: Malicious

65.108.159.129 is a malicious IP address. Reported by 6 threat sources, last seen 2026-09-13. Network: AS24940 Hetzner Online GmbH.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Open proxy — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2025-10-08 04:51:40 2026-09-13 16:22:32 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:26:18 2026-09-11 16:25:11 attacker malicious-activity
Proxy IPWhois.io 2025-02-17 01:19:39 2026-09-05 13:17:47 anonymization proxy
VPN geonode Maltiverse Threat Observatory 2026-08-28 09:43:10 2026-08-29 09:45:58 anomalous-activity anonymization country_code:br industry:education-and-nonprofits malicious-activity
Suspicious Host AbuseIPDB 2024-11-12 13:53:39 2026-01-11 19:06:01 anomalous-activity
Proxy FireHOL 2024-11-02 09:30:06 2025-10-07 10:03:40 anonymization
DDoS attack on site hospital.volyn.ua Blocklist.net.ua 2024-11-12 13:32:44 2025-10-02 10:31:25 malicious-activity
HTTP Spammer StopForumSpam.com 2025-06-25 06:39:10 2025-09-13 18:11:39 malicious-activity

Tags

anonymization abuse bot port:8081 port:1080 port:3129 port:8080 port:999 port:3128 port:5678 port:4145 port:1081 port:5153

Whois information

AS name
AS24940 Hetzner Online GmbH
AS registry
ripencc
AS date
2001-02-09 00:00:00
AS CIDR
65.108.0.0/16
Registrant
Hetzner Online GmbH
City
Helsinki
Postal code
00100
Country
FI — Finland 🇫🇮
First indexed
2024-11-02 09:30:06
Last updated
2026-09-13 16:22:32

Malicious IPs in the same CIDR

65.108.159.129 65.108.198.248 65.108.239.60 65.108.1.122 65.108.99.126 65.108.13.173 65.108.120.25 65.108.11.163 65.108.156.99 65.108.203.35 65.108.233.166 65.108.78.33 65.108.125.120 65.108.214.201 65.108.57.101 65.108.249.14 65.108.85.225 65.108.81.45 65.108.136.190 65.108.2.171 65.108.129.218 65.108.204.82 65.108.239.102 65.108.44.168 65.108.238.107