52.14.18.129

Classification: Neutral

52.14.18.129 is a neutral IP address. Reported by 3 threat sources, last seen 2025-03-27. Network: AS16509 Amazon Technologies Inc..

MITRE ATT&CK associations

Malware families: REDLINE STEALER (S1240) NJRAT (S0385) ASYNCRAT (S1087)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Asyncrat Maltrail 2025-03-27 13:22:16 2025-03-27 13:22:29 malicious-activity S1087 AsyncRAT
Meterpreter ThreatFox Abuse.ch 2023-10-02 09:19:09 2023-10-04 08:20:53 malicious-activity
NjRAT ThreatFox Abuse.ch 2021-09-22 15:44:37 2023-09-29 13:47:02 malicious-activity S0385 njRAT
Nanocore RAT ThreatFox Abuse.ch 2022-01-21 00:04:21 2023-05-12 01:20:21 malicious-activity
Proxy FireHOL 2023-04-02 04:59:08 2023-05-02 03:15:09 anonymization
RedLine Stealer ThreatFox Abuse.ch 2022-09-10 13:21:45 2022-09-12 12:18:37 malicious-activity S1240 RedLine Stealer

Tags

c2 historicalandnew meterpreter port:16935 port:10324 njrat port:16543 bladabindi lime-worm nanocore rat port:13025 nancrat anonymization port:16924 port:17939 port:11572 port:17662 port:19280 port:16659 port:18436 redlinestealer port:18817 port:17912 port:10117 port:17425 port:18445 port:19948 port:15090 port:14734 port:17369 port:19217 port:13738 port:10254 port:19709 port:10065 port:12969 port:13683 port:11046 port:18100 port:11677 port:14232

Whois information

AS name
AS16509 Amazon Technologies Inc.
AS registry
arin
AS date
1991-12-19 00:00:00
AS CIDR
52.14.0.0/16
CIDR
52.0.0.0/11
Registrant
Amazon Technologies Inc.
Address
410 Terry Ave N.
City
Columbus
State
OH
Postal code
43215
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected], [email protected], [email protected]
First indexed
2020-07-24 12:45:33
Last updated
2026-09-03 01:15:56