124.16.111.52

Classification: Malicious

124.16.111.52 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-05. Network: AS7497 CNIC CAS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.net.ua 2026-09-01 16:16:06 2026-09-05 16:48:50 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:51:50 2026-09-04 16:51:50 attacker malicious-activity
SSH Attacker Blocklist.de 2026-09-01 14:00:36 2026-09-01 14:00:36 attacker malicious-activity
SSH Attacker AbuseIPDB 2025-11-04 04:13:55 2025-11-04 22:46:14 malicious-activity
Bruteforce AbuseIPDB 2025-11-04 04:13:50 2025-11-04 22:46:14 malicious-activity
Port Scanner AbuseIPDB 2025-11-04 11:13:02 2025-11-04 21:02:30 anomalous-activity
Malicious Host AbuseIPDB 2025-11-04 17:44:55 2025-11-04 20:39:24 compromised malicious-activity
Hacking AbuseIPDB 2025-11-04 05:33:15 2025-11-04 20:39:24 malicious-activity
Mail Spammer AbuseIPDB 2025-11-04 12:00:44 2025-11-04 12:00:44 malicious-activity
Malicious Host HoneyDB 2025-11-04 00:00:00 2025-11-04 00:00:00 malicious-activity

Tags

ssh bruteforce bot abuse

Whois information

AS name
AS7497 CNIC CAS
Registrant
CNIC CAS
City
Beijing
Postal code
100010
Country
CN — China 🇨🇳
First indexed
2025-11-04 23:05:29
Last updated
2026-09-05 16:48:50