IOC Radar
IPMediumSignal 76/100

209.38.18.214

Location
AustraliaAustralia
Sydney, New South Wales
ASN
AS14061
DigitalOcean, LLC
First Seen
Apr 21, 2026
Last Seen
Apr 30, 2026
Apr 21
First Seen
67d ago
Apr 30
Last Seen
58d ago
11
Reports
source reports
76%
Confidence
medium
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryAUAustralia
RegionSydney, New South Wales
ASNAS14061
OrganizationDigitalOcean, LLC

Feed Intelligence Summary

11 reports76% confidence
11
Source reports
76%
Confidence score
Category tags
abuseactive scanauaustraliabad reputationbrute forcebrute force attackerbrute-forcecloud computingcloud infrastructurecloud migrationcloud securitycloud storagecowriedata store exposureddosddos attackdionaeaexploitation activityexploited hostfatthackingindicatormalwaremulti-cloud managementnetworkoceaniap0fping of deathresearchedscannersensor-taggedsshssh attackt-pottannertor nodetpot

Activity Timeline

1 total obs
Apr 30Apr 30

Threat Activity Heatmap

· Peak: 2026-04-30
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
11
Reports
First seenApr 21, 2026
Last seenApr 30, 2026
GeolocationAU
CountryAustralia
LocationSydney, New South Wales
ASNAS14061
OrgDigitalOcean, LLC
Coords-33.9088, 151.1960

VirusTotal

Not checked

WHOIS

description
Observed on T-Pot within last 24h; sensors=p0f; threshold?1; private IPs excluded. geo=AU; ports=2202 Location=Sydney, Australia.
raw
inetnum: 209.0.0.0 - 209.255.255.255 netname: ARIN-CIDR-BLOCK descr: Not allocated by APNIC remarks: ------------------------------------------------------ remarks: remarks: Important: remarks: remarks: Details of networks in this range are not registered remarks: in the APNIC Whois Database. remarks: remarks: Please search the ARIN Whois, which contains remarks: details of IP addresses allocated in North America, remarks: parts of the Caribbean, and sub-equatorial Africa: remarks: remarks: website: https://ws.arin.net/whois remarks: command line: whois.arin.net remarks: remarks: ------------------------------------------------------ country: AU admin-c: IANA1-AP tech-c: IANA1-AP mnt-by: MAINT-APNIC-AP mnt-lower: MAINT-APNIC-AP status: ALLOCATED PORTABLE last-modified: 2009-05-01T03:52:53Z source: APNIC role: Internet Assigned Numbers Authority address: see http://www.iana.org. admin-c: IANA1-AP tech-c: IANA1-AP nic-hdl: IANA1-AP remarks: For more information on IANA services remarks: go to IANA web site at http://www.iana.org. mnt-by: MAINT-APNIC-AP last-modified: 2018-06-22T22:34:30Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 1 month ago
Appeared in 11 threat reports