52.14.18.129
Classification: Neutral
52.14.18.129 is a neutral IP address. Reported by 3 threat sources, last seen 2025-03-27. Network: AS16509 Amazon Technologies Inc..
MITRE ATT&CK associations
Malware families: REDLINE STEALER (S1240) NJRAT (S0385) ASYNCRAT (S1087)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Asyncrat | Maltrail | 2025-03-27 13:22:16 | 2025-03-27 13:22:29 | malicious-activity | S1087 AsyncRAT |
| Meterpreter | ThreatFox Abuse.ch | 2023-10-02 09:19:09 | 2023-10-04 08:20:53 | malicious-activity | |
| NjRAT | ThreatFox Abuse.ch | 2021-09-22 15:44:37 | 2023-09-29 13:47:02 | malicious-activity | S0385 njRAT |
| Nanocore RAT | ThreatFox Abuse.ch | 2022-01-21 00:04:21 | 2023-05-12 01:20:21 | malicious-activity | |
| Proxy | FireHOL | 2023-04-02 04:59:08 | 2023-05-02 03:15:09 | anonymization | |
| RedLine Stealer | ThreatFox Abuse.ch | 2022-09-10 13:21:45 | 2022-09-12 12:18:37 | malicious-activity | S1240 RedLine Stealer |
Tags
c2 historicalandnew meterpreter port:16935 port:10324 njrat port:16543 bladabindi lime-worm nanocore rat port:13025 nancrat anonymization port:16924 port:17939 port:11572 port:17662 port:19280 port:16659 port:18436 redlinestealer port:18817 port:17912 port:10117 port:17425 port:18445 port:19948 port:15090 port:14734 port:17369 port:19217 port:13738 port:10254 port:19709 port:10065 port:12969 port:13683 port:11046 port:18100 port:11677 port:14232Whois information
- AS name
- AS16509 Amazon Technologies Inc.
- AS registry
- arin
- AS date
- 1991-12-19 00:00:00
- AS CIDR
- 52.14.0.0/16
- CIDR
- 52.0.0.0/11
- Registrant
- Amazon Technologies Inc.
- Address
- 410 Terry Ave N.
- City
- Columbus
- State
- OH
- Postal code
- 43215
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2020-07-24 12:45:33
- Last updated
- 2026-09-03 01:15:56