AbuseIPDB » 172.202.117.213
172.202.117.213 was found in our database!
This IP was reported 576 times. Confidence of Abuse is 100%: ?
ISP | Microsoft Limited |
---|---|
Usage Type | Data Center/Web Hosting/Transit |
ASN | AS8075 |
Hostname(s) |
azpdcexdg7i9.stretchoid.com |
Domain Name | microsoft.com |
Country |
![]() |
City | Des Moines, Iowa |
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated biweekly.
IP Abuse Reports for 172.202.117.213:
This IP address has been reported a total of 576 times from 168 distinct sources. 172.202.117.213 was first reported on , and the most recent report was .
Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.
Reporter | IoA Timestamp in UTC | Comment | Categories | |
---|---|---|---|---|
![]() |
WEB 🕸 Honeypot: scanning-probing /owa/auth/logon.aspx
|
Bad Web Bot Web App Attack | ||
![]() |
tcp/443
|
Port Scan | ||
Anonymous |
[27/Mar/2025:10:39:32 -0400] "GET /owa/auth/logon.aspx HTTP/1.1" "Mozilla/5.0 zgrab/0.x"
|
Hacking | ||
Anonymous |
Fail2ban Nginx log integration.
|
Port Scan Brute-Force SSH | ||
![]() |
Request for URL /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application
|
Phishing Brute-Force Web App Attack | ||
![]() |
Port probe to tcp/443 (https)
[srv134] |
Port Scan Brute-Force Bad Web Bot Web App Attack | ||
![]() |
|
Hacking Web App Attack | ||
![]() |
|
Hacking Web App Attack | ||
![]() |
GET /owa/auth/logon.aspx (Tarpitted for 1d15h8m27s, wasted 8.06MB)
|
Web App Attack | ||
![]() |
2 port probes: 2x tcp/443 (https)
[srv125] |
Port Scan Brute-Force Bad Web Bot Web App Attack | ||
![]() |
5 attempts since 23.02.2025 11:14:59 UTC - last search for: /owa/auth/logon.aspx
|
Web App Attack | ||
![]() |
|
Port Scan Web App Attack | ||
![]() |
tcp/443 (2 or more attempts)
|
Port Scan | ||
![]() |
|
Web App Attack | ||
![]() |
Port 443 scanned.
|
Port Scan |
Showing 1 to 15 of 576 reports
Is this your IP? You may request to takedown any associated reports. We will attempt to verify your ownership. Request Takedown 🚩