167.172.38.97

Classification: Malicious

167.172.38.97 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-25. Network: AS14061 Digitalocean, LLC.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-08-25 09:14:19 2026-08-25 09:14:19 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-08-25 09:14:18 2026-08-25 09:14:18 malicious-activity
Malicious Host CIArmy 2026-05-05 15:09:52 2026-08-24 20:03:22 attacker malicious-activity
Malicious Host HoneyDB 2020-02-24 00:00:00 2026-08-23 00:00:00 attacker malicious-activity
Suspicious Host AbuseIPDB 2026-04-01 23:59:10 2026-05-05 15:30:16 anomalous-activity
Mail Spammer Barracuda 2020-02-25 02:00:53 2020-02-25 02:00:53

Whois information

AS name
AS14061 Digitalocean, LLC
AS registry
ripencc
AS date
1993-08-30 00:00:00
AS CIDR
167.172.32.0/20
CIDR
167.172.0.0/16
Registrant
Digitalocean, LLC
Address
101 Avenue of the Americas, 10th Floor New York 10013 UNITED STATES
City
Amsterdam
Postal code
1012 AB
Country
NL — Netherlands 🇳🇱
First indexed
2020-02-25 02:00:50
Last updated
2026-08-25 09:14:57

Malicious IPs in the same CIDR

167.172.44.97 167.172.44.218 167.172.32.23 167.172.33.228 167.172.42.255 167.172.36.162 167.172.40.228 167.172.42.230 167.172.38.97 167.172.42.56 167.172.34.203 167.172.34.114 167.172.39.1 167.172.42.141 167.172.33.97 167.172.42.67 167.172.45.225