138.68.237.131
Classification: Malicious
138.68.237.131 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-01. Network: AS14061 Digital Ocean Inc.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-08-27 09:11:03 | 2026-09-01 09:10:55 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-08-27 09:11:01 | 2026-09-01 09:10:53 | malicious-activity | |
| Malicious Host | CIArmy | 2026-08-30 20:02:30 | 2026-08-30 20:02:30 | attacker malicious-activity | |
| nemucod,ransomware,shade,troldesh,tvrat | Maltiverse | 2017-11-23 09:09:20 | 2017-11-23 09:09:20 |
Tags
nemucod ransomware shade troldesh tvratWhois information
- AS name
- AS14061 Digital Ocean Inc
- AS registry
- arin
- AS date
- 2016-01-26 00:00:00
- AS CIDR
- 138.68.224.0/20
- CIDR
- 138.68.0.0/16
- Registrant
- DigitalOcean, LLC
- Address
- 101 Ave of the Americas 10th Floor
- City
- New York
- State
- NY
- Postal code
- 10013
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected]
- First indexed
- 2017-11-23 09:09:20
- Last updated
- 2026-09-01 09:11:23