IOC Radar
IPMediumSignal 61/100

68.183.217.184

Location
GermanyGermany
Frankfurt am Main, Hesse
ASN
AS14061
DigitalOcean, LLC
First Seen
Apr 14, 2021
Last Seen
May 22, 2026
Apr 14
First Seen
1901d ago
May 22
Last Seen
36d ago
25
Reports
source reports
61%
Confidence
medium
Found in 25 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
61%
Signal Score
61 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

44 techniques

Network Information

CountryDEGermany
RegionFrankfurt am Main, Hesse
ASNAS14061
OrganizationDigitalOcean, LLC

IP Category

Proxy
Proxy server

Feed Intelligence Summary

25 reports61% confidence
25
Source reports
61%
Confidence score
Category tags
abuseaccess controlaccount compromiseactive scanactive scanningapacheapache attackeraptasiaattackaustraliaauthentication abuseauthentication attackauthentication attemptsauthentication brute forceauthentication failureautomated attacksautomated threatbad reputationbad web botblocklist_allbotnetbotnet activitybrute forcebrute force attackbrute force attemptbrute force attemptsbrute-forcecisco devicecivil servicescloud infrastructurecloud infrastructure attackcloud servicescommand injectioncommunication protocolcompromised credentialscompromised hostcowrie capturecowrie honeypotcowrie ssh attackscredential accesscredential attackcredential attackscredential brute forcecredential harvestingcredential stuffingdata encryptiondata exfiltrationdata store exposuredatabase securityddosddos attackdedecoy systemdenial of servicedevice managementdigital oceandionaea capturedionaea honeypotdionaea malware detectiondnsdns attackencryptionenterprise networkingeuropeexploitexploit attemptexploitation activityexploitation attemptexploited hostexternal access attemptsexternal threatfailed loginfattftpftp brute forceftp brute-forcegermanygovernment technologyhackinghoneytrap honeypothttp scannerhttp/sidentity & access exploitationinformation technologyinitial accessinjection activityinjection attacksinternet-facingiociot securityiot targetedipv4ipv4 attacksit infrastructurelamplamp exploit attemptslateral movementlinux serverslinux systemslogin attackmailoney honeypotmalaysiamalicious activitymalicious softwaremalwaremalware behaviourmalware capturenetworknetwork activitynetwork attacksnetwork infrastructurenetwork intrusionnetwork intrusion attemptnetwork intrusion attemptsnetwork probingnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynetwork servicesnetwork traffic analysisoceaniaopenctip0fpassword attackpassword attacksphishingphishing attackphishing trapping of deathprocess injectionprotocol exploitationproxypublic administrationpublic infrastructurepublic policyransomwarereconnaissanceregulatory agenciesremote accessremote loginremote servicesresearchedresource hijackingscannerscannersscanning activitysecurity policysensor-taggedsentrypeer botnetservice scanservice scanningsftp attacksmtpsocial engineeringsocradar honeypotsoftware developmentspamsshssh attackssh monitoringt-pott1021t1021.001t1021.002t1021.004t1040t1041t1046t1055t1059t1059.003t1059.004t1071t1071.001t1076t1077t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1187t1190t1203t1204.002t1210t1486t1496t1499.001t1499.002t1499.003t1563t1565t1566.001t1566.002t1566.003t1589.002t1590.006t1592.002t1595t1595.001t1595.002t1595.003tannertcp protocoltelecommunicationstelnet threatthreat actorthreat detectionthreat intelligencethreat preventiontor nodetpotunauthorized loginvoipvoip attackvulnerability scanvulnerability-exploitationweb app attackweb application attackweb exploitationweb spamweb traffic

Activity Timeline

1 total obs
May 22May 22

Threat Activity Heatmap

· Peak: 2026-05-22
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
61
SIGNAL
Signal Score
61%
Confidence
25
Reports
First seenApr 14, 2021
Last seenMay 22, 2026
GeolocationDE
CountryGermany
LocationFrankfurt am Main, Hesse
ASNAS14061
OrgDigitalOcean, LLC
Coords50.1169, 8.6837
Proxy

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 5 years ago · Last seen 1 month ago
Appeared in 25 threat reports