178.128.238.2

Classification: Malicious

178.128.238.2 is a malicious IP address. Reported by 4 threat sources, last seen 2026-07-30. Network: AS14061 DigitalOcean, LLC.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.de 2026-07-30 14:00:21 2026-07-30 14:00:21 attacker malicious-activity
Suspicious Host AbuseIPDB 2024-12-29 15:19:59 2025-11-18 21:33:53 anomalous-activity
Malicious Host CIArmy 2025-09-26 15:52:46 2025-09-26 15:52:46 malicious-activity
Anonymizer Maltiverse 2019-06-28 10:09:12 2019-06-28 10:09:12

Tags

anonymizer ssh bruteforce bot

Whois information

AS name
AS14061 DigitalOcean, LLC
AS registry
ripencc
AS date
2010-03-03 00:00:00
AS CIDR
178.128.224.0/20
Registrant
DigitalOcean, LLC
City
Toronto
Postal code
M4S
Country
CA — Canada 🇨🇦
First indexed
2019-06-28 10:09:12
Last updated
2026-08-19 17:22:43

Malicious IPs in the same CIDR

178.128.237.216 178.128.234.248 178.128.225.99 178.128.239.213 178.128.224.184 178.128.235.192 178.128.227.185 178.128.227.13 178.128.233.150 178.128.232.73 178.128.236.78 178.128.232.115 178.128.225.16 178.128.238.2 178.128.229.194 178.128.225.209 178.128.226.162 178.128.233.50