167.172.138.229
Classification: Malicious
167.172.138.229 is a malicious IP address. Reported by 2 threat sources, last seen 2026-08-22. Network: AS14061 Digitalocean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Malicious Host | CIArmy | 2023-04-21 08:27:50 | 2026-08-22 20:03:10 | attacker malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2026-07-15 11:13:19 | 2026-08-22 09:14:15 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2026-07-15 11:13:18 | 2026-08-22 09:14:13 | malicious-activity |
Whois information
- AS name
- AS14061 Digitalocean, LLC
- AS registry
- ripencc
- AS date
- 1993-08-30 00:00:00
- AS CIDR
- 167.172.128.0/20
- CIDR
- 167.172.0.0/16
- Registrant
- Digitalocean, LLC
- Address
- 101 Avenue of the Americas, 10th Floor New York 10013 UNITED STATES
- City
- North Bergen
- State
- NJ
- Postal code
- 07047
- Country
- US — United States 🇺🇸
- First indexed
- 2023-04-21 08:27:50
- Last updated
- 2026-08-22 20:03:10
Malicious IPs in the same CIDR
167.172.129.109 167.172.136.12 167.172.138.147 167.172.131.98 167.172.129.25 167.172.138.48 167.172.138.187 167.172.138.229 167.172.129.130 167.172.133.85