5.135.98.203

Classification: Malicious

5.135.98.203 is a malicious IP address. Reported by 3 threat sources, last seen 2026-08-13. Network: AS16276 OVH SAS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Bruteforce login attacker Blocklist.de 2026-08-12 09:02:12 2026-08-13 09:02:38 attacker malicious-activity
HTTP Attacker Blocklist.de 2026-08-12 07:02:25 2026-08-13 07:02:42 attacker malicious-activity
Malicious Host AbuseIPDB 2026-05-16 22:46:29 2026-05-24 13:57:19 malicious-activity
SSH Attacker Blocklist.de 2024-04-22 04:30:08 2026-05-16 10:01:28 malicious-activity
Suspicious Host AbuseIPDB 2026-05-16 00:02:19 2026-05-16 00:02:19 anomalous-activity
Malicious Host HoneyDB 2026-05-16 00:00:00 2026-05-16 00:00:00 malicious-activity

Tags

ssh bruteforce bot apache ddos rfi attacker login joomla wordpress

Whois information

AS name
AS16276 OVH SAS
AS registry
ripencc
AS date
2012-07-06 00:00:00
AS CIDR
5.135.0.0/16
CIDR
5.135.98.200/30
Registrant
OVH SAS
Address
OVH SAS 2 rue Kellermann 59100 Roubaix France
City
Roubaix
Postal code
59100
Country
FR — France 🇫🇷
Contact email
[email protected]
First indexed
2024-04-22 04:30:08
Last updated
2026-08-13 16:27:42

Malicious IPs in the same CIDR

5.135.254.255 5.135.229.85 5.135.191.56 5.135.213.214 5.135.179.42 5.135.174.193 5.135.149.19 5.135.104.141 5.135.103.166 5.135.108.124 5.135.136.19 5.135.65.145 5.135.37.21 5.135.139.120 5.135.142.201 5.135.83.4 5.135.98.203 5.135.142.114