196.196.53.140
Classification: Malicious
196.196.53.140 is a malicious IP address. Reported by 9 threat sources, last seen 2026-09-01. Network: AS41564 Fiber Grid.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| HTTP Spammer | StopForumSpam.com | 2023-01-03 11:58:48 | 2026-09-01 07:33:55 | malicious-activity | |
| HTTP Spammer | Sblam | 2023-04-08 20:43:55 | 2026-07-27 07:03:19 | malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-07-13 00:22:14 | 2026-06-07 02:46:12 | anomalous-activity | |
| VPN | IPWhois.io | 2025-02-08 07:54:42 | 2026-05-01 21:52:07 | anonymization | |
| HTTP Attacker | AbuseIPDB | 2026-03-26 04:00:35 | 2026-04-30 15:46:14 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-03-26 04:54:05 | 2026-04-29 17:07:00 | anomalous-activity | |
| Phishing | AbuseIPDB | 2026-03-26 04:33:06 | 2026-04-27 18:14:54 | malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-04-25 05:44:10 | 2026-04-26 13:46:15 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-03-26 13:39:40 | 2026-04-25 04:40:17 | malicious-activity | |
| Hacking | AbuseIPDB | 2026-04-24 23:53:37 | 2026-04-25 02:27:47 | malicious-activity | |
| VPN Private Internet Access | Maltiverse Threat Observatory | 2025-09-02 08:00:24 | 2026-01-07 08:02:16 | country_code:br country_code:ky country_code:mx country_code:us industry:education-and-nonprofits industry:financial-services industry:government-and-public-sector industry:healthcare-and-pharmaceutical industry:retail-and-hospitality industry:technology-and-telecommunications | |
| HTTP Spammer | Cleantalk.org | 2024-04-15 12:22:28 | 2025-07-11 15:38:43 | malicious-activity | |
| Proxy | IPWhois.io | 2025-06-11 08:43:48 | 2025-06-15 06:17:29 | anonymization | |
| HTTP bot | Blocklist.de | 2024-10-07 06:15:01 | 2024-10-08 10:35:22 | malicious-activity | |
| Malicious Host | HoneyDB | 2023-03-18 00:00:00 | 2023-03-18 00:00:00 | malicious-activity | |
| HTTP Spammer | Myip.ms | 2023-01-03 07:11:02 | 2023-01-11 09:27:58 | malicious-activity |
Tags
bot abuse attacker spam bruteforce port:1194 port:51820 port:992 port:5555 port:500 port:4500 port:1701 port:1723 port:443Whois information
- AS name
- AS41564 Fiber Grid
- AS registry
- afrinic
- AS date
- 2012-11-21 00:00:00
- AS CIDR
- 196.196.53.0/24
- CIDR
- 196.196.0.0/18
- Registrant
- Fiber Grid
- Address
- N5 Sturdee Avenue, Suite 301 2196, Rosebank, Johannesburg, South Africa
- City
- Riga
- Postal code
- LV-1811
- Country
- LV — Latvia 🇱🇻
- First indexed
- 2023-01-03 07:11:02
- Last updated
- 2026-09-01 07:33:55
Malicious IPs in the same CIDR
196.196.53.102 196.196.53.100 196.196.53.19 196.196.53.142 196.196.53.91 196.196.53.136 196.196.53.99 196.196.53.92 196.196.53.101 196.196.53.109 196.196.53.107 196.196.53.108 196.196.53.131 196.196.53.132 196.196.53.133 196.196.53.137 196.196.53.134 196.196.53.140 196.196.53.141 196.196.53.105 196.196.53.110 196.196.53.135 196.196.53.138 196.196.53.104 196.196.53.139