https://38.22.17.252/
Classification: Malicious
https://38.22.17.252/ is a malicious URL. Reported by 1 threat source, last seen 2026-09-02. IoC context and downloadable threat intel on Maltiverse.
Current activity
- Offline — no longer resolving. Last online 2026-09-03 00:36:34.
- Malware distribution — This indicator is distributing malware.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Maltiverse Threat Observatory | 2026-07-13 20:10:04 | 2026-09-02 20:15:13 | anomalous-activity country_code:ar country_code:ca country_code:co country_code:do country_code:ec country_code:gt country_code:ni country_code:us industry:education-and-nonprofits industry:energy-and-utilities industry:healthcare-and-pharmaceutical industry:manufacturing industry:retail-and-hospitality industry:technology-and-telecommunications malicious-activity malware |
URL information
- Direct IP
- 38.22.17.252 — this URL points straight to an IP address, a strong indicator of malicious use.
- SHA-256
130bdd0352c066a01661b8855071df68c48ea4a9611521750557ed7e2e10ed51- First indexed
- 2026-07-14 11:45:16
- Last updated
- 2026-09-03 00:36:34
- Last online
- 2026-09-03 00:36:34