54.37.36.116
Classification: Suspicious
54.37.36.116 is a suspicious IP address. Linked to Nanocore, Asyncrat malware. Reported by 3 threat sources, last seen 2025-03-27. Network: AS16276 OVH LTD.
MITRE ATT&CK associations
Malware families: NANOCORE (S0336) ASYNCRAT (S1087)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Asyncrat | Maltrail | 2025-03-27 13:24:52 | 2025-03-27 13:49:04 | malicious-activity | S1087 AsyncRAT |
| Nanocore RAT | ThreatFox Abuse.ch | 2023-09-27 22:24:35 | 2023-09-29 18:26:24 | malicious-activity | S0336 NanoCore |
| Mail Spammer | Abuseat.org | 2023-09-27 22:24:35 | 2023-09-27 22:24:35 |
Tags
c2 historicalandnew nanocore rat port:24980 nancrat port:49746 port:46943Whois information
- AS name
- AS16276 OVH LTD
- AS registry
- ripencc
- AS date
- 1992-03-17 00:00:00
- AS CIDR
- 54.37.0.0/16
- CIDR
- 54.37.36.112/28
- Registrant
- OVH LTD
- Address
- 2 rue Kellermann 59100 Roubaix FRANCE
- City
- Roubaix
- Postal code
- 59100
- Country
- FR — France 🇫🇷
- Contact email
- [email protected]
- First indexed
- 2023-09-27 22:24:35
- Last updated
- 2025-12-25 00:54:11
Malicious IPs in the same CIDR
54.37.229.48 54.37.100.115 54.37.204.181 54.37.18.137 54.37.74.231 54.37.2.81 54.37.11.28 54.37.10.124 54.37.77.236 54.37.234.111 54.37.5.18 54.37.77.212 54.37.211.125 54.37.130.150