54.37.77.212
Classification: Malicious
54.37.77.212 is a malicious IP address. Reported by 6 threat sources, last seen 2026-08-16. Network: AS16276 OVH SAS.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Mail Spammer | Barracuda | 2026-06-16 08:34:06 | 2026-08-16 00:36:16 | attacker malicious-activity | |
| SSH Attacker | Blocklist.de | 2018-01-14 15:22:59 | 2024-05-26 04:03:34 | malicious-activity | |
| SSH Attacker | Blocklist.net.ua | 2018-01-10 14:12:27 | 2024-04-29 06:03:22 | malicious-activity | |
| Malicious Host | CIArmy | 2023-06-19 08:33:02 | 2023-09-23 07:47:19 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP UDP | Emerging Threats | 2023-06-20 12:49:16 | 2023-09-22 13:27:40 | malicious-activity | |
| ET CINS Active Threat Intelligence Poor Reputation IP TCP | Emerging Threats | 2023-06-20 12:49:07 | 2023-09-22 13:27:31 | malicious-activity | |
| Malicious Host | HoneyDB | 2023-07-27 00:00:00 | 2023-07-27 00:00:00 | malicious-activity |
Tags
abuse ssh bruteforce botWhois information
- AS name
- AS16276 OVH SAS
- AS registry
- ripencc
- AS date
- 1992-03-17 00:00:00
- AS CIDR
- 54.37.0.0/16
- Registrant
- OVH SAS
- City
- Saarbrucken
- Postal code
- 66117
- Country
- DE — Germany 🇩🇪
- First indexed
- 2018-01-10 02:52:02
- Last updated
- 2026-08-16 00:36:17
Malicious IPs in the same CIDR
54.37.5.18 54.37.18.137 54.37.74.231 54.37.229.48 54.37.11.28 54.37.10.124 54.37.77.212 54.37.211.125 54.37.130.150 54.37.234.111 54.37.131.158