196.196.53.104
Classification: Malicious
196.196.53.104 is a malicious IP address. Reported by 7 threat sources, last seen 2026-09-01. Network: AS41564 Fiber Grid.
Current activity
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| HTTP Spammer | StopForumSpam.com | 2023-09-19 07:49:27 | 2026-09-01 07:33:55 | malicious-activity | |
| HTTP Spammer | Sblam | 2024-09-03 21:59:11 | 2026-06-22 07:03:23 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-08-22 08:57:45 | 2026-05-28 10:05:19 | anomalous-activity | |
| VPN | IPWhois.io | 2025-05-02 09:11:06 | 2026-04-08 12:27:25 | anonymization | |
| ET TOR Known Tor Relay/Router (Not Exit) Node TCP Traffic | Emerging Threats | 2025-11-09 03:02:14 | 2025-11-10 03:52:48 | anonymization | |
| HTTP Spammer | Cleantalk.org | 2024-05-16 16:34:33 | 2025-05-06 23:33:28 | malicious-activity | |
| Mail Spammer | Abuseat.org | 2023-09-19 07:49:28 | 2023-09-19 07:49:30 |
Tags
bot abuse tor anonymizationWhois information
- AS name
- AS41564 Fiber Grid
- AS registry
- afrinic
- AS date
- 2012-11-21 00:00:00
- AS CIDR
- 196.196.53.0/24
- CIDR
- 196.196.0.0/18
- Registrant
- Fiber Grid
- Address
- N5 Sturdee Avenue, Suite 301 2196, Rosebank, Johannesburg, South Africa
- City
- Riga
- Postal code
- LV-1811
- Country
- LV — Latvia 🇱🇻
- First indexed
- 2023-09-19 07:49:27
- Last updated
- 2026-09-01 07:33:55
Malicious IPs in the same CIDR
196.196.53.140 196.196.53.102 196.196.53.100 196.196.53.19 196.196.53.142 196.196.53.91 196.196.53.136 196.196.53.99 196.196.53.92 196.196.53.101 196.196.53.109 196.196.53.107 196.196.53.108 196.196.53.131 196.196.53.132 196.196.53.133 196.196.53.137 196.196.53.134 196.196.53.141 196.196.53.105 196.196.53.110 196.196.53.135 196.196.53.138 196.196.53.104 196.196.53.139