65.21.167.139

Classification: Malicious

65.21.167.139 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-05. Network: AS24940 Hetzner Online GmbH.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-07-26 16:15:11 2026-09-05 16:24:13 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:26:16 2026-09-04 16:26:16 attacker malicious-activity
HTTP Spammer StopForumSpam.com 2026-07-26 09:03:33 2026-09-03 07:13:42 attacker malicious-activity
Bruteforce AbuseIPDB 2026-07-07 18:58:11 2026-07-26 05:57:49 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-07-05 13:49:02 2026-07-26 02:12:02 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-07-07 18:58:11 2026-07-25 20:21:18 attacker malicious-activity
Hacking AbuseIPDB 2026-07-05 14:47:34 2026-07-25 19:09:27 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-07-10 05:25:34 2026-07-25 12:45:10 anomalous-activity attacker malicious-activity
Malicious Host AbuseIPDB 2026-07-21 18:11:09 2026-07-25 05:39:24 attacker compromised malicious-activity
DDoS Attacker AbuseIPDB 2026-07-10 05:25:34 2026-07-11 06:02:12 attacker malicious-activity
Port Scanner AbuseIPDB 2026-07-06 17:55:24 2026-07-11 03:29:21 anomalous-activity attacker malicious-activity reconnaissance
Mail Spammer AbuseIPDB 2026-07-10 05:25:34 2026-07-10 05:25:34 attacker malicious-activity

Tags

bot abuse

Whois information

AS name
AS24940 Hetzner Online GmbH
Registrant
Hetzner Online GmbH
City
Helsinki
Postal code
00100
Country
FI — Finland 🇫🇮
First indexed
2026-07-26 09:03:33
Last updated
2026-09-05 16:24:13