138.197.147.248
Classification: Malicious
138.197.147.248 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-10. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker โ Seen launching attacks over the Internet.
- Known scanner โ Seen scanning hosts over the Internet.
- VPN node โ Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-08-06 09:11:33 | 2026-09-10 09:10:34 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-08-06 09:11:32 | 2026-09-10 09:10:33 | attacker malicious-activity | |
| VPN | IPWhois.io | 2025-01-13 08:16:50 | 2026-08-31 10:34:10 | anonymization vpn | |
| Malicious Host | CIArmy | 2026-08-06 20:02:10 | 2026-08-30 20:02:29 | attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-08-02 02:03:43 | 2026-08-30 11:31:00 | anomalous-activity attacker malicious-activity reconnaissance | |
| Hacking | AbuseIPDB | 2026-08-02 03:53:47 | 2026-08-30 05:04:39 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-08-05 08:24:55 | 2026-08-26 15:25:05 | attacker malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-08-02 02:06:57 | 2026-08-26 15:25:05 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-08-02 21:04:51 | 2026-08-21 02:54:26 | attacker malicious-activity | |
| Malicious Host | HoneyDB | 2026-08-07 00:00:00 | 2026-08-17 00:00:00 | attacker malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-08-12 06:17:43 | 2026-08-12 06:17:43 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-08-03 07:09:49 | 2026-08-03 07:09:49 | anomalous-activity attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2025-01-13 02:04:15 | 2025-01-28 10:04:01 | anomalous-activity |
Whois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- arin
- AS date
- 2016-01-26 00:00:00
- AS CIDR
- 138.197.144.0/20
- CIDR
- 138.197.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas FL2
- City
- Toronto
- State
- NY
- Postal code
- M4S
- Country
- CA โ Canada ๐จ๐ฆ
- Contact email
- [email protected], [email protected]
- First indexed
- 2025-01-13 08:16:48
- Last updated
- 2026-09-10 09:10:56
Malicious IPs in the same CIDR
138.197.148.150 138.197.147.248 138.197.155.203 138.197.154.118 138.197.146.59 138.197.155.72 138.197.158.200 138.197.152.229 138.197.154.9 138.197.152.223 138.197.153.44 138.197.144.34 138.197.149.131 138.197.152.1 138.197.147.6 138.197.155.154 138.197.157.0 138.197.157.130 138.197.155.246 138.197.153.228 138.197.152.130 138.197.149.29 138.197.148.39 138.197.154.149 138.197.151.117