5.196.52.124
Classification: Malicious
5.196.52.124 is a malicious IP address. Reported by 2 threat sources, last seen 2026-08-27. Network: AS16276 OVH SAS.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SSH Attacker | Blocklist.de | 2018-05-04 07:43:14 | 2026-08-27 14:01:19 | attacker malicious-activity | |
| Malicious Host | HoneyDB | 2026-08-26 00:00:00 | 2026-08-27 00:00:00 | attacker malicious-activity |
Tags
ssh bruteforce botWhois information
- AS name
- AS16276 OVH SAS
- AS registry
- ripencc
- AS date
- 2012-08-23 00:00:00
- AS CIDR
- 5.196.0.0/16
- Country
- FR — France 🇫🇷
- First indexed
- 2018-05-04 07:43:14
- Last updated
- 2026-09-01 22:01:20
Malicious IPs in the same CIDR
5.196.78.175 5.196.224.39 5.196.182.145 5.196.176.10 5.196.189.50 5.196.182.59 5.196.182.68 5.196.196.207 5.196.160.167 5.196.111.112 5.196.101.28 5.196.95.34 5.196.67.167 5.196.64.200 5.196.68.118 5.196.58.96 5.196.202.32 5.196.64.99 5.196.104.57 5.196.52.124 5.196.65.217 5.196.239.79 5.196.27.18