138.197.222.35

Classification: Malicious

138.197.222.35 is a malicious IP address. Reported by 9 threat sources, last seen 2026-08-25. Network: AS14061 Digitalocean, LLC.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-05-19 03:18:02 2026-08-25 09:11:51 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-05-19 03:17:59 2026-08-25 09:11:49 attacker malicious-activity
Malicious Host CIArmy 2026-05-16 16:02:55 2026-08-22 20:02:41 attacker malicious-activity
Malicious Host AbuseIPDB 2026-05-18 23:06:13 2026-06-04 20:00:05 malicious-activity
Suspicious Host AbuseIPDB 2026-05-15 22:34:55 2026-05-15 22:34:55 anomalous-activity
Proxy IPWhois.io 2025-11-04 21:25:05 2025-11-04 21:25:05 anonymization
Proxy FireHOL 2023-10-06 17:30:04 2025-10-07 08:21:22 anonymization
Anonymizer Maltiverse Research Team 2020-11-22 00:06:05 2021-05-23 13:07:16 anonymizer
Malicious Host HoneyDB 2019-12-04 00:00:00 2019-12-04 00:00:00
HTTP Spammer Myip.ms 2018-08-25 08:57:02 2018-08-25 08:57:02
Proxy Maltiverse Research Team 2018-04-21 10:52:09 2018-04-21 10:52:09
Anonymizer Maltiverse 2017-12-09 20:18:34 2017-12-09 20:18:34

Tags

anonymizer proxy abuse bot anonymization

Whois information

AS name
AS14061 Digitalocean, LLC
AS registry
arin
AS date
2016-01-26 00:00:00
AS CIDR
138.197.208.0/20
CIDR
138.197.0.0/16
Registrant
Digitalocean, LLC
Address
101 Ave of the Americas 10th Floor
City
San Jose
State
CA
Postal code
95113
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected]
First indexed
2017-12-09 20:18:34
Last updated
2026-08-25 09:11:57

Malicious IPs in the same CIDR

138.197.212.221 138.197.212.80 138.197.222.35 138.197.219.187