138.197.171.237
Classification: Malicious
138.197.171.237 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-09. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| VPN | IPWhois.io | 2025-02-08 17:35:10 | 2026-09-09 14:10:46 | anonymization vpn | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-02-03 03:00:49 | 2026-08-14 09:11:53 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-02-03 03:00:38 | 2026-08-14 09:11:51 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-02-01 14:04:40 | 2026-02-17 04:30:44 | anomalous-activity | |
| Malicious Host | CIArmy | 2025-02-08 17:35:09 | 2026-02-02 16:18:17 | malicious-activity | |
| Malicious Host | HoneyDB | 2026-01-30 00:00:00 | 2026-01-30 00:00:00 | malicious-activity |
Whois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- arin
- AS date
- 2016-01-26 00:00:00
- AS CIDR
- 138.197.160.0/20
- CIDR
- 138.197.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas FL2
- City
- Toronto
- State
- NY
- Postal code
- M4R
- Country
- CA — Canada 🇨🇦
- Contact email
- [email protected], [email protected]
- First indexed
- 2025-02-08 17:35:09
- Last updated
- 2026-09-09 14:10:47
Malicious IPs in the same CIDR
138.197.165.171 138.197.174.172 138.197.173.94 138.197.173.249 138.197.175.165 138.197.165.12 138.197.169.42 138.197.167.14 138.197.169.166 138.197.174.121 138.197.171.237 138.197.160.183 138.197.165.254 138.197.161.145 138.197.166.134 138.197.162.152 138.197.166.178 138.197.171.178 138.197.165.63 138.197.171.227 138.197.174.62 138.197.166.108 138.197.164.127 138.197.174.194 138.197.169.248