5.141.154.197
Classification: Malicious
5.141.154.197 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-03. Network: AS12389 PJSC Rostelecom.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2026-09-03 05:42:56 | 2026-09-03 05:42:56 | attacker malicious-activity | |
| SSH Attacker | Blocklist.de | 2017-12-08 18:14:44 | 2017-12-08 18:14:44 |
Tags
ssh bruteforce botWhois information
- AS name
- AS12389 PJSC Rostelecom
- AS registry
- ripencc
- AS date
- 2012-07-03 00:00:00
- AS CIDR
- 5.141.128.0/18
- Registrant
- PJSC Rostelecom
- City
- Chelyabinsk
- Postal code
- 454007
- Country
- RU — Russian Federation 🇷🇺
- First indexed
- 2017-12-08 18:14:44
- Last updated
- 2026-09-03 05:42:58
Malicious IPs in the same CIDR
5.141.147.183 5.141.154.197 5.141.154.99 5.141.172.57 5.141.177.189 5.141.152.254