https://38.22.17.252/

Classification: Malicious

https://38.22.17.252/ is a malicious URL. Reported by 1 threat source, last seen 2026-09-02. IoC context and downloadable threat intel on Maltiverse.

Current activity

  • Offline — no longer resolving. Last online 2026-09-03 00:36:34.
  • Malware distribution — This indicator is distributing malware.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Maltiverse Threat Observatory 2026-07-13 20:10:04 2026-09-02 20:15:13 anomalous-activity country_code:ar country_code:ca country_code:co country_code:do country_code:ec country_code:gt country_code:ni country_code:us industry:education-and-nonprofits industry:energy-and-utilities industry:healthcare-and-pharmaceutical industry:manufacturing industry:retail-and-hospitality industry:technology-and-telecommunications malicious-activity malware

URL information

Direct IP
38.22.17.252 — this URL points straight to an IP address, a strong indicator of malicious use.
SHA-256
130bdd0352c066a01661b8855071df68c48ea4a9611521750557ed7e2e10ed51
First indexed
2026-07-14 11:45:16
Last updated
2026-09-03 00:36:34
Last online
2026-09-03 00:36:34