138.68.161.17
Classification: Malicious
138.68.161.17 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-10. Network: AS14061 Digital Ocean Inc.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | HoneyDB | 2026-02-22 00:00:00 | 2026-09-10 00:00:00 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2026-02-22 21:05:12 | 2026-02-22 21:05:12 | anomalous-activity | |
| Malicious Host | CIArmy | 2023-09-30 07:51:37 | 2023-10-05 07:39:27 | malicious-activity | |
| SSH Attacker | Blocklist.de | 2020-03-28 00:57:45 | 2021-10-05 01:04:52 | malicious-activity | |
| Malicious host | Darklist | 2020-05-10 02:02:51 | 2020-05-10 02:02:51 |
Tags
ssh bruteforce botWhois information
- AS name
- AS14061 Digital Ocean Inc
- AS registry
- arin
- AS date
- 2016-01-26 00:00:00
- AS CIDR
- 138.68.160.0/20
- CIDR
- 138.68.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- New York
- State
- NY
- Postal code
- 10013
- Country
- GB — United Kingdom 🇬🇧
- Contact email
- [email protected], [email protected]
- First indexed
- 2020-03-28 00:57:45
- Last updated
- 2026-09-10 22:03:06
Malicious IPs in the same CIDR
138.68.161.17 138.68.172.35 138.68.165.69 138.68.164.186 138.68.162.171 138.68.165.157 138.68.171.130 138.68.175.203 138.68.164.22 138.68.164.254