164.92.223.159 Threat Intelligence and Host Information
General
This page contains threat intelligence information for the IPv4 address 164.92.223.159 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.
Possibly Malicious Host 🟢 29/100
Host and Network Information
-
Mitre ATT&CK IDs: T1595 - Active Scanning
-
Tags: digital ocean, portscan, scan, scanners, sip, sipvicious, ssh
-
View other sources: Spamhaus VirusTotal
- Country: Netherlands
- Network:
- Noticed: 2 times
- Protocols Attacked: portscan
- Countries Attacked: Australia
- Passive DNS Results: veelser10.skin againy6store1.store arewklo3.store veelser8.skin polysale6.quest prizetime7.shop prizetime8.shop gift4you2.quest prizetime10.shop fwobuysale5.store fwobuysale3.store fwobuysale4.store fwobuysale6.store fwobuysale7.store fwobuysale10.store fwobuysale2.store fwobuysale1.store fwobuysale9.store fwobuysale8.store winaprize5.shop winaprize4.shop winaprize6.shop winaprize3.shop winaprize10.shop winaprize7.shop winaprize8.shop winaprize9.shop winaprize1.shop winaprize2.shop
Open Ports Detected
Map
Whois Information
- NetRange: 164.92.64.0 - 164.92.255.255
- CIDR: 164.92.64.0/18, 164.92.128.0/17
- NetName: DO-13
- NetHandle: NET-164-92-64-0-1
- Parent: NET164 (NET-164-0-0-0-0)
- NetType: Direct Allocation
- OriginAS:
- Organization: DigitalOcean, LLC (DO-13)
- RegDate: 2020-05-04
- Updated: 2020-05-04
- Ref: https://rdap.arin.net/registry/ip/164.92.64.0
- OrgName: DigitalOcean, LLC
- OrgId: DO-13
- Address: 105 Edgeview Drive, Suite 425
- City: Broomfield
- StateProv: CO
- PostalCode: 80021
- Country: US
- RegDate: 2012-05-14
- Updated: 2025-04-11
- Ref: https://rdap.arin.net/registry/entity/DO-13
- OrgAbuseHandle: DIGIT19-ARIN
- OrgAbuseName: DigitalOcean Abuse
- OrgAbusePhone: +1-646-827-4366
- OrgAbuseEmail: abuse@digitalocean.com
- OrgAbuseRef: https://rdap.arin.net/registry/entity/DIGIT19-ARIN
- OrgNOCHandle: NOC32014-ARIN
- OrgNOCName: Network Operations Center
- OrgNOCPhone: +1-646-827-4366
- OrgNOCEmail: noc@digitalocean.com
- OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
- OrgTechHandle: NOC32014-ARIN
- OrgTechName: Network Operations Center
- OrgTechPhone: +1-646-827-4366
- OrgTechEmail: noc@digitalocean.com
- OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN