138.68.111.189
Classification: Malicious
138.68.111.189 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-07. Network: AS14061 Digitalocean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | HoneyDB | 2026-08-07 00:00:00 | 2026-08-07 00:00:00 | attacker malicious-activity | |
| Proxy | IPWhois.io | 2026-03-13 19:36:28 | 2026-03-13 19:36:28 | anonymization | |
| Proxy | FireHOL | 2023-01-02 01:51:38 | 2025-10-07 08:06:10 | anonymization | |
| Malicious Host | CIArmy | 2022-08-23 02:13:01 | 2022-08-26 02:37:23 | malicious-activity | |
| Anonymizer | Maltiverse Research Team | 2020-11-22 00:01:48 | 2021-05-23 13:00:57 | anonymizer | |
| Anonymizer | Maltiverse | 2018-04-19 11:05:58 | 2018-04-19 11:05:58 |
Tags
anonymization anonymizerWhois information
- AS name
- AS14061 Digitalocean, LLC
- AS registry
- arin
- AS date
- 2016-01-26 00:00:00
- AS CIDR
- 138.68.96.0/20
- CIDR
- 138.68.0.0/16
- Registrant
- Digitalocean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- Frankfurt
- State
- NY
- Postal code
- 60311
- Country
- DE — Germany 🇩🇪
- Contact email
- [email protected], [email protected]
- First indexed
- 2018-04-19 11:05:58
- Last updated
- 2026-08-07 22:02:12
Malicious IPs in the same CIDR
138.68.104.134 138.68.106.202 138.68.106.235 138.68.108.72 138.68.98.18 138.68.109.96 138.68.111.189 138.68.100.141