178.128.238.2
Classification: Malicious
178.128.238.2 is a malicious IP address. Reported by 4 threat sources, last seen 2026-07-30. Network: AS14061 DigitalOcean, LLC.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.de | 2026-07-30 14:00:21 | 2026-07-30 14:00:21 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-12-29 15:19:59 | 2025-11-18 21:33:53 | anomalous-activity | |
| Malicious Host | CIArmy | 2025-09-26 15:52:46 | 2025-09-26 15:52:46 | malicious-activity | |
| Anonymizer | Maltiverse | 2019-06-28 10:09:12 | 2019-06-28 10:09:12 |
Tags
anonymizer ssh bruteforce botWhois information
- AS name
- AS14061 DigitalOcean, LLC
- AS registry
- ripencc
- AS date
- 2010-03-03 00:00:00
- AS CIDR
- 178.128.224.0/20
- Registrant
- DigitalOcean, LLC
- City
- Toronto
- Postal code
- M4S
- Country
- CA — Canada 🇨🇦
- First indexed
- 2019-06-28 10:09:12
- Last updated
- 2026-08-19 17:22:43
Malicious IPs in the same CIDR
178.128.237.216 178.128.234.248 178.128.225.99 178.128.239.213 178.128.224.184 178.128.235.192 178.128.227.185 178.128.227.13 178.128.233.150 178.128.232.73 178.128.236.78 178.128.232.115 178.128.225.16 178.128.238.2 178.128.229.194 178.128.225.209 178.128.226.162 178.128.233.50