54.36.116.0

Classification: Malicious

54.36.116.0 is a malicious IP address. Linked to Mispadu malware. Reported by 2 threat sources, last seen 2026-08-10. Network: AS16276 OVH SAS.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

MITRE ATT&CK associations

Malware families: MISPADU (S1122)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Barracuda 2025-01-23 12:17:14 2026-08-10 16:48:03 attacker malicious-activity
Mispadu ThreatFox Abuse.ch 2025-01-23 12:17:11 2025-01-25 11:25:43 malicious-activity S1122 Mispadu

Tags

bra geo port:8577 ursa

Whois information

AS name
AS16276 OVH SAS
AS registry
ripencc
AS date
1992-03-17 00:00:00
AS CIDR
54.36.0.0/16
Registrant
OVH SAS
City
Saarbrucken
Postal code
66117
Country
DE — Germany 🇩🇪
First indexed
2025-01-23 12:17:11
Last updated
2026-08-10 16:48:04

Malicious IPs in the same CIDR

54.36.205.38 54.36.108.162 54.36.232.187 54.36.73.108 54.36.177.228 54.36.226.228 54.36.119.171 54.36.114.17 54.36.116.0 54.36.150.170 54.36.227.165 54.36.226.169