138.197.222.35
Classification: Malicious
138.197.222.35 is a malicious IP address. Reported by 9 threat sources, last seen 2026-08-25. Network: AS14061 Digitalocean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-05-19 03:18:02 | 2026-08-25 09:11:51 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-05-19 03:17:59 | 2026-08-25 09:11:49 | attacker malicious-activity | |
| Malicious Host | CIArmy | 2026-05-16 16:02:55 | 2026-08-22 20:02:41 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-05-18 23:06:13 | 2026-06-04 20:00:05 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-05-15 22:34:55 | 2026-05-15 22:34:55 | anomalous-activity | |
| Proxy | IPWhois.io | 2025-11-04 21:25:05 | 2025-11-04 21:25:05 | anonymization | |
| Proxy | FireHOL | 2023-10-06 17:30:04 | 2025-10-07 08:21:22 | anonymization | |
| Anonymizer | Maltiverse Research Team | 2020-11-22 00:06:05 | 2021-05-23 13:07:16 | anonymizer | |
| Malicious Host | HoneyDB | 2019-12-04 00:00:00 | 2019-12-04 00:00:00 | ||
| HTTP Spammer | Myip.ms | 2018-08-25 08:57:02 | 2018-08-25 08:57:02 | ||
| Proxy | Maltiverse Research Team | 2018-04-21 10:52:09 | 2018-04-21 10:52:09 | ||
| Anonymizer | Maltiverse | 2017-12-09 20:18:34 | 2017-12-09 20:18:34 |
Tags
anonymizer proxy abuse bot anonymizationWhois information
- AS name
- AS14061 Digitalocean, LLC
- AS registry
- arin
- AS date
- 2016-01-26 00:00:00
- AS CIDR
- 138.197.208.0/20
- CIDR
- 138.197.0.0/16
- Registrant
- Digitalocean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- San Jose
- State
- CA
- Postal code
- 95113
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2017-12-09 20:18:34
- Last updated
- 2026-08-25 09:11:57
Malicious IPs in the same CIDR
138.197.212.221 138.197.212.80 138.197.222.35 138.197.219.187