159.65.30.244 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 159.65.30.244 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 15/100
Host and Network Information
- View other sources: Spamhaus VirusTotal
- Country: United Kingdom
- Network:
- Noticed: 1 times
- Protocols Attacked: portscan ssh
- Passive DNS Results: miawughtea.com www.kendoy04.duckdns.org kendoy04.duckdns.org whybegitu.ddns.net www.zigizagga14.duckdns.org zigizagga14.duckdns.org gorogol-manaco2351.serveblog.net www.kintil11.duckdns.org kintil11.duckdns.org aqwsdesw14.robin98.net kintilayam.duckdns.org www.kintilayam.duckdns.org server.miawughtea.com testamzcok.duckdns.org www.testamzcok.duckdns.org www.cbalae44.duckdns.org cbalae44.duckdns.org
Open Ports Detected
100 102 1022 1028 104 110 119 12306 1443 2000 2001 20106 2101 2111 22 23 26 3102 3500 400 4000 442 443 4433 45000 45001 4840 5010 5242 5609 6440 66 6633 7006 79 80 800 8008 8035 8041 8080 8129 8241 8440 88 8800 8818 888 9028 9042 9214 9999
CVEs Detected
CVE-2009-2940 CVE-2009-3720 CVE-2020-29396 CVE-2021-32052 CVE-2023-27043 CVE-2023-30861 CVE-2023-36632 CVE-2024-6232 CVE-2024-7592 CVE-2024-9287 CVE-2025-12084 CVE-2025-12781 CVE-2025-13836 CVE-2025-13837 CVE-2026-27205
Map
Whois Information
- NetRange: 159.65.0.0 - 159.65.255.255
- CIDR: 159.65.0.0/16
- NetName: DIGITALOCEAN-159-65-0-0
- NetHandle: NET-159-65-0-0-1
- Parent: NET159 (NET-159-0-0-0-0)
- NetType: Direct Allocation
- OriginAS:
- Organization: DigitalOcean, LLC (DO-13)
- RegDate: 2017-10-24
- Updated: 2020-04-03
- Comment: Routing and Peering Policy can be found at https://www.as14061.net
- Comment:
- Ref: https://rdap.arin.net/registry/ip/159.65.0.0
- OrgName: DigitalOcean, LLC
- OrgId: DO-13
- Address: 105 Edgeview Drive, Suite 425
- City: Broomfield
- StateProv: CO
- PostalCode: 80021
- Country: US
- RegDate: 2012-05-14
- Updated: 2025-04-11
- Ref: https://rdap.arin.net/registry/entity/DO-13
- OrgAbuseHandle: DIGIT19-ARIN
- OrgAbuseName: DigitalOcean Abuse
- OrgAbusePhone: +1-646-827-4366
- OrgAbuseEmail: abuse@digitalocean.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/DIGIT19-ARIN
- OrgNOCHandle: NOC32014-ARIN
- OrgNOCName: Network Operations Center
- OrgNOCPhone: +1-646-827-4366
- OrgNOCEmail: noc@digitalocean.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
- OrgTechHandle: NOC32014-ARIN
- OrgTechName: Network Operations Center
- OrgTechPhone: +1-646-827-4366
- OrgTechEmail: noc@digitalocean.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
Links to attack logs
digitaloceantoronto-ssh-bruteforce-ip-list-2026-03-11 ******
Share on: