5.181.168.28
Classification: Malicious
5.181.168.28 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-11. Network: AS52000 MIRholding B.V..
Current activity
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Proxy | FireHOL | 2023-06-03 14:11:15 | 2026-09-11 16:05:38 | anomalous-activity anonymization proxy | |
| Anonymizer | FireHOL | 2026-03-30 06:03:52 | 2026-09-11 15:06:49 | anomalous-activity anonymization | |
| HTTP Spammer | StopForumSpam.com | 2022-03-23 01:52:10 | 2026-09-07 07:03:16 | malicious-activity | |
| HTTP Spammer | Cleantalk.org | 2024-03-31 12:59:29 | 2024-03-31 12:59:29 | malicious-activity |
Tags
bot abuse anonymizationWhois information
- AS name
- AS52000 MIRholding B.V.
- AS registry
- ripencc
- AS date
- 2019-04-02 00:00:00
- AS CIDR
- 5.181.168.0/24
- CIDR
- 5.181.168.0/24
- Address
- 40 CLINTON ST, STE L # 32250, NEWARK, NJ 07102, United States
- City
- Ankara
- Postal code
- 06420
- Country
- RU — Russian Federation 🇷🇺
- First indexed
- 2022-03-23 01:52:10
- Last updated
- 2026-09-11 16:05:38
Malicious IPs in the same CIDR
5.181.168.21 5.181.168.210 5.181.168.216 5.181.168.146 5.181.168.128 5.181.168.130 5.181.168.66 5.181.168.50 5.181.168.75 5.181.168.11 5.181.168.28 5.181.168.13 5.181.168.121