198.98.54.3

Classification: Malicious

198.98.54.3 is a malicious IP address. Reported by 8 threat sources, last seen 2026-09-08. Network: AS53667 FranTech Solutions.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.
  • VPN node β€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
HTTP Attacker Blocklist.de 2026-08-18 07:00:23 2026-09-08 07:00:22 attacker malicious-activity
DDoS Attacker Blocklist.net.ua 2026-08-30 16:05:40 2026-09-05 17:19:45 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 17:23:45 2026-09-04 17:23:45 attacker malicious-activity
VPN IPWhois.io 2026-07-30 12:28:30 2026-09-03 01:19:39 anonymization vpn
HTTP Attacker AbuseIPDB 2026-07-28 14:24:55 2026-09-02 12:02:07 attacker malicious-activity
Bruteforce AbuseIPDB 2026-07-28 19:56:42 2026-09-02 03:00:03 attacker malicious-activity
Hacking AbuseIPDB 2026-07-28 15:37:41 2026-09-02 03:00:03 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-07-29 08:27:10 2026-09-01 16:01:02 anomalous-activity attacker malicious-activity
Malicious Host AbuseIPDB 2026-07-28 15:53:30 2026-09-01 07:27:24 attacker compromised malicious-activity
SQL Injection AbuseIPDB 2026-08-02 05:05:18 2026-09-01 05:06:58 attacker malicious-activity
Port Scanner AbuseIPDB 2026-08-08 11:56:25 2026-09-01 01:34:45 anomalous-activity attacker malicious-activity reconnaissance
SSH Attacker AbuseIPDB 2026-07-30 06:00:00 2026-08-31 07:22:29 attacker malicious-activity
Phishing AbuseIPDB 2026-08-25 21:30:21 2026-08-25 21:30:21 malicious-activity phishing
Mail Spammer AbuseIPDB 2026-08-13 06:12:26 2026-08-25 21:30:21 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-07-28 14:24:55 2026-08-23 20:09:53 attacker malicious-activity
Bruteforce login attacker Blocklist.de 2026-08-18 09:00:16 2026-08-19 09:00:18 attacker malicious-activity
Malicious Host CIArmy 2021-02-11 18:24:38 2024-02-28 09:39:06 malicious-activity
HTTP Spammer StopForumSpam.com 2023-01-03 12:06:32 2023-04-09 01:37:25 malicious-activity
ET TOR Known Tor Relay/Router (Not Exit) Node TCP Traffic Emerging Threats 2022-12-28 21:25:22 2023-01-26 09:20:53 anonymization
HTTP Spammer Sblam 2023-01-03 07:27:02 2023-01-16 20:31:03 malicious-activity
ET TOR Known Tor Exit Node TCP Traffic Emerging Threats 2022-12-28 21:23:22 2023-01-16 09:20:11 anonymization
Unauthorized scanning of hosts Blocklist.net.ua 2021-02-12 11:26:41 2021-02-18 11:28:56

Tags

bot abuse tor anonymization apache ddos rfi attacker login bruteforce joomla wordpress

Whois information

AS name
AS53667 FranTech Solutions
AS registry
arin
AS date
2012-07-05 00:00:00
AS CIDR
198.98.48.0/20
CIDR
198.98.48.0/20
Registrant
FranTech Solutions
Address
1621 Central Ave
City
New York City
State
NY
Postal code
10007
Country
US β€” United States πŸ‡ΊπŸ‡Έ
Contact email
[email protected]
First indexed
2021-02-11 14:55:32
Last updated
2026-09-08 07:00:22

Malicious IPs in the same CIDR

198.98.54.44 198.98.61.249 198.98.54.215 198.98.53.130 198.98.51.189 198.98.60.200 198.98.60.89 198.98.51.249 198.98.57.151 198.98.61.145 198.98.54.3 198.98.53.92 198.98.62.56 198.98.48.33 198.98.50.199 198.98.62.158 198.98.57.217 198.98.57.91 198.98.57.74 198.98.52.229 198.98.56.118 198.98.51.29 198.98.56.172 198.98.60.195 198.98.59.125