IPMediumSignal 79/100
157.230.49.169
Location
North Bergen, NJ
ASN
AS14061
DigitalOcean, LLC
First Seen
Apr 16, 2026
Last Seen
May 4, 2026
Apr 16
First Seen
60d ago
May 4
Last Seen
42d ago
11
Reports
source reports
79%
Confidence
medium
5/91
VirusTotal
detections
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
79%
Signal Score
79 / 100
IDS Rule
No
Threat Context
Tags
Network Information
Country
United States
RegionNorth Bergen, NJ
ASNAS14061
OrganizationDigitalOcean, LLC
Feed Intelligence Summary
11 reports79% confidence
11
Source reports
79%
Confidence score
Category tags
abuseactive scanbad reputationbrute forcebrute force attackerbrute-forcecowriedigital oceandionaeaexploitation activityfatthackingindicatornetworknorth americap0fportscanresearchedscannerscannerssensor-taggedservice scansshssh attacktannertpotunited statesusvultr
Activity Timeline
May 4May 4
Threat Activity Heatmap
· Peak: 2026-05-04LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
The provided IOC, an IPv4 address, carries a high threat score of 78.74 and is associated with multiple threat intelligence feeds indicating malicious activity. This indicator points towards active reconnaissance and potential brute-force attack campaigns, specifically targeting SSH services and originating from honeypot data observations. If this IP address is detected communicating with organizational assets, it signifies an imminent risk of unauthorized access, system compromise, and potentia…
Threat ScoreHigh Risk
79
SIGNAL
Signal Score
79%
Confidence
11
Reports
First seenApr 16, 2026
Last seenMay 4, 2026
GeolocationUS
CountryUnited States
LocationNorth Bergen, NJ
ASNAS14061
OrgDigitalOcean, LLC
Coords40.7930, -74.0247
WHOIS
- description
- IPv4 hosts detected port scanning Vultr Melbourne (Australia) honeypot
- raw
- NetRange: 157.230.0.0 - 157.230.255.255 CIDR: 157.230.0.0/16 NetName: DIGITALOCEAN-157-230-0-0 NetHandle: NET-157-230-0-0-1 Parent: NET157 (NET-157-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: DigitalOcean, LLC (DO-13) RegDate: 2018-08-22 Updated: 2020-04-03 Comment: Routing and Peering Policy can be found at https://www.as14061.net Comment: Comment: Please submit abuse reports at https://www.digitalocean.com/company/contact/#abuse Ref: https://rdap.arin.net/registry/ip/157.230.0.0 OrgName: DigitalOcean, LLC OrgId: DO-13 Address: 105 Edgeview Drive, Suite 425 City: Broomfield StateProv: CO PostalCode: 80021 Country: US RegDate: 2012-05-14 Updated: 2025-04-11 Ref: https://rdap.arin.net/registry/entity/DO-13 OrgNOCHandle: NOC32014-ARIN OrgNOCName: Network Operations Center OrgNOCPhone: +1-646-827-4366 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN OrgAbuseHandle: DIGIT19-ARIN OrgAbuseName: DigitalOcean Abuse OrgAbusePhone: +1-646-827-4366 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/DIGIT19-ARIN OrgTechHandle: NOC32014-ARIN OrgTechName: Network Operations Center OrgTechPhone: +1-646-827-4366 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
- references
- https://jamesbrine.com.au/digitaloceanlondon-portscan-bruteforce-ip-list-2026-04-16/, https://jamesbrine.com.au, https://jamesbrine.com.au/vultrtokyo-portscan-bruteforce-ip-list-2026-04-16/, https://jamesbrine.com.au/vultrmelbournetest-portscan-bruteforce-ip-list-2026-04-16/, https://jamesbrine.com.au/vultrparis-portscan-bruteforce-ip-list-2026-04-16/
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 1 month ago
Appeared in 11 threat reports