IPLowSignal 100/100
164.92.111.101
Location
Santa Clara, California
ASN
AS14061
DigitalOcean, LLC
First Seen
Nov 20, 2023
Last Seen
Feb 15, 2026
Nov 20
First Seen
934d ago
Feb 15
Last Seen
115d ago
12
Reports
source reports
99%
Confidence
low
0/91
VirusTotal
detections
Found in 12 reports. Confidence: low. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
United States
RegionSanta Clara, California
ASNAS14061
OrganizationDigitalOcean, LLC
Feed Intelligence Summary
12 reports99% confidence
12
Source reports
99%
Confidence score
Category tags
abuseactive scanningattackaustraliaauthenticationauto-generated securitybotnetbrute forcebrute force attackbrute force attemptbrute-forccommand and controlcowrie honeypotcredential accesscredential stuffingctadata exfiltrationdecoy systemdistributed attacksindicatorinfomalicious activitymalicious softwaremalwarenetworknetwork scanningnetwork securitynorth americanoticeoceaniapassword attackpassword attacksprocess injectionreconnaissanceremote accessresearchedscannersftp attackssh attackssh monitoringt1021.004t1041t1055t1071.001t1078t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.002t1499.003t1565t1588.004t1589.002t1595.001t1595.002t1595.003telecommunicationsthreat actorthreat intelligenceunited states
Activity Timeline
Feb 15Feb 15
Threat Activity Heatmap
· Peak: 2026-02-15LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
12
Reports
First seenNov 20, 2023
Last seenFeb 15, 2026
GeolocationUS
CountryUnited States
LocationSanta Clara, California
ASNAS14061
OrgDigitalOcean, LLC
Coords37.7510, -97.8220
WHOIS
- description
- Host bruteforcing SSH
- raw
- NetRange: 164.92.64.0 - 164.92.255.255 CIDR: 164.92.128.0/17, 164.92.64.0/18 NetName: DO-13 NetHandle: NET-164-92-64-0-1 Parent: NET164 (NET-164-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: DigitalOcean, LLC (DO-13) RegDate: 2020-05-04 Updated: 2020-05-04 Ref: https://rdap.arin.net/registry/ip/164.92.64.0 OrgName: DigitalOcean, LLC OrgId: DO-13 Address: 101 Ave of the Americas Address: FL2 City: New York StateProv: NY PostalCode: 10013 Country: US RegDate: 2012-05-14 Updated: 2023-10-23 Ref: https://rdap.arin.net/registry/entity/DO-13 OrgNOCHandle: NOC32014-ARIN OrgNOCName: Network Operations Center OrgNOCPhone: +1-347-875-6044 OrgNOCEmail: [email protected] OrgNOCRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN OrgAbuseHandle: ABUSE5232-ARIN OrgAbuseName: Abuse, DigitalOcean OrgAbusePhone: +1-347-875-6044 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/ABUSE5232-ARIN OrgTechHandle: NOC32014-ARIN OrgTechName: Network Operations Center OrgTechPhone: +1-347-875-6044 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/NOC32014-ARIN
- references
- https://redpiranha.net, https://github.com/telekom-security/tpotce
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
lowFirst detected 2 years ago · Last seen 3 months ago
Appeared in 12 threat reports