172.180.64.131

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
187 reports
88 reporters ยท latest 1 hour ago
ISP Microsoft Limited
Usage Type Data Center/Web Hosting/Transit
ASN AS8075
Hostname(s) azpdwsm16vn8.stretchoid.com
Domain Name microsoft.com
Country ๐Ÿ‡บ๐Ÿ‡ธ United States of America
City Phoenix, Arizona

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 172.180.64.131

This IP address has been reported a total of 187 times from 88 distinct sources. 172.180.64.131 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 80 reports; Germany with 23 reports; Hong Kong with 13 reports. The most common categories in these recent reports were: Port Scan 153 times; Hacking 34 times; Brute-Force 24 times; SSH 12 times; Web App Attack 12 times; Other 19 times.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ฉ๐Ÿ‡ช DasDuo
Attempt on port 162. Blocked by firewall (unsolicited inbound, no prior outbound connection).
Port Scan
๐Ÿ‡ง๐Ÿ‡ท noconex
Port Scan Brute-Force SSH
๐Ÿ‡บ๐Ÿ‡ฆ llighthunter
Hacking SSH
๐Ÿ‡ณ๐Ÿ‡ฑ VMHeaven.io
Blocked by UFW [44818/tcp] Source port: 45756 TTL: 30 Packet length: 52
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท zulzeen
[incypit-web] Blocked by SysWarden Firewall [BLOCK] (SIP/VoIP Attack)
Fraud VoIP Brute-Force
๐Ÿ‡ต๐Ÿ‡ฑ Budyn
Hacking Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/7210 (2 or more attempts)
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช ValtonTahiri
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ etu brutus
172.180.64.131 Blocked by [Attack Vector List] ...
Hacking Brute-Force Exploited Host
๐Ÿ‡ฉ๐Ÿ‡ช acadeova
Port Scan
๐Ÿ‡ฒ๐Ÿ‡ณ Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized traffic (1 bytes of payload); 8980 [2] TCP
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช ManagedStack
Probing access to unauthorized locations
Hacking Exploited Host Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 5094,9200 (2 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-23 20:25:12 UTC Unauthorized activity to TCP port 9200.
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท EvoX
๐Ÿ›ก๏ธ Honeypot [bsts-tpot-hive]: Empty payload (likely service probe); 8118 [2] TCP
Port Scan

Showing 1 to 15 of 187 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ง๐Ÿ‡ท 191.242.237.174
๐Ÿ‡ฎ๐Ÿ‡ณ 157.20.228.20
๐Ÿ‡ญ๐Ÿ‡ฐ 154.83.14.204
๐Ÿ‡บ๐Ÿ‡ธ 147.185.132.215
๐Ÿ‡ณ๐Ÿ‡ฑ 109.160.32.28
๐Ÿ‡ธ๐Ÿ‡ฌ 103.189.235.95
๐Ÿ‡ญ๐Ÿ‡ฐ 101.36.107.233
๐Ÿ‡ฎ๐Ÿ‡ถ 91.205.42.138
๐Ÿ‡ฎ๐Ÿ‡ณ 59.179.31.237
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.152
๐Ÿ‡บ๐Ÿ‡ธ 35.223.72.182
๐Ÿ‡ฏ๐Ÿ‡ต 164.52.24.185
๐Ÿ‡บ๐Ÿ‡ฆ 79.143.45.75
๐Ÿ‡ณ๐Ÿ‡ฑ 77.239.124.209
๐Ÿ‡บ๐Ÿ‡ธ 66.249.84.32
๐Ÿ‡ณ๐Ÿ‡ฑ 45.198.224.184
๐Ÿ‡ง๐Ÿ‡ท 201.139.186.238
๐Ÿ‡บ๐Ÿ‡ธ 162.216.150.168
๐Ÿ‡จ๐Ÿ‡ฎ 160.120.138.46
๐Ÿ‡ซ๐Ÿ‡ฎ 147.185.133.121