5.196.52.124

Classification: Malicious

5.196.52.124 is a malicious IP address. Reported by 2 threat sources, last seen 2026-08-27. Network: AS16276 OVH SAS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.de 2018-05-04 07:43:14 2026-08-27 14:01:19 attacker malicious-activity
Malicious Host HoneyDB 2026-08-26 00:00:00 2026-08-27 00:00:00 attacker malicious-activity

Tags

ssh bruteforce bot

Whois information

AS name
AS16276 OVH SAS
AS registry
ripencc
AS date
2012-08-23 00:00:00
AS CIDR
5.196.0.0/16
Country
FR — France 🇫🇷
First indexed
2018-05-04 07:43:14
Last updated
2026-09-01 22:01:20

Malicious IPs in the same CIDR

5.196.78.175 5.196.224.39 5.196.182.145 5.196.176.10 5.196.189.50 5.196.182.59 5.196.182.68 5.196.196.207 5.196.160.167 5.196.111.112 5.196.101.28 5.196.95.34 5.196.67.167 5.196.64.200 5.196.68.118 5.196.58.96 5.196.202.32 5.196.64.99 5.196.104.57 5.196.52.124 5.196.65.217 5.196.239.79 5.196.27.18