IPMediumSignal 76/100
209.38.18.214
Location
Sydney, New South Wales
ASN
AS14061
DigitalOcean, LLC
First Seen
Apr 21, 2026
Last Seen
Apr 30, 2026
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags
Network Information
Country
Australia
RegionSydney, New South Wales
ASNAS14061
OrganizationDigitalOcean, LLC
Feed Intelligence Summary
11 reports76% confidence
11
Source reports
76%
Confidence score
Category tags
abuseactive scanauaustraliabad reputationbrute forcebrute force attackerbrute-forcecloud computingcloud infrastructurecloud migrationcloud securitycloud storagecowriedata store exposureddosddos attackdionaeaexploitation activityexploited hostfatthackingindicatormalwaremulti-cloud managementnetworkoceaniap0fping of deathresearchedscannersensor-taggedsshssh attackt-pottannertor nodetpot
Activity Timeline
Apr 30Apr 30
Threat Activity Heatmap
· Peak: 2026-04-30LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
11
Reports
First seenApr 21, 2026
Last seenApr 30, 2026
GeolocationAU
CountryAustralia
LocationSydney, New South Wales
ASNAS14061
OrgDigitalOcean, LLC
Coords-33.9088, 151.1960
VirusTotal
Not checked
WHOIS
- description
- Observed on T-Pot within last 24h; sensors=p0f; threshold?1; private IPs excluded. geo=AU; ports=2202 Location=Sydney, Australia.
- raw
- inetnum: 209.0.0.0 - 209.255.255.255 netname: ARIN-CIDR-BLOCK descr: Not allocated by APNIC remarks: ------------------------------------------------------ remarks: remarks: Important: remarks: remarks: Details of networks in this range are not registered remarks: in the APNIC Whois Database. remarks: remarks: Please search the ARIN Whois, which contains remarks: details of IP addresses allocated in North America, remarks: parts of the Caribbean, and sub-equatorial Africa: remarks: remarks: website: https://ws.arin.net/whois remarks: command line: whois.arin.net remarks: remarks: ------------------------------------------------------ country: AU admin-c: IANA1-AP tech-c: IANA1-AP mnt-by: MAINT-APNIC-AP mnt-lower: MAINT-APNIC-AP status: ALLOCATED PORTABLE last-modified: 2009-05-01T03:52:53Z source: APNIC role: Internet Assigned Numbers Authority address: see http://www.iana.org. admin-c: IANA1-AP tech-c: IANA1-AP nic-hdl: IANA1-AP remarks: For more information on IANA services remarks: go to IANA web site at http://www.iana.org. mnt-by: MAINT-APNIC-AP last-modified: 2018-06-22T22:34:30Z source: APNIC
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 1 month ago
Appeared in 11 threat reports