20.112.235.167
| ISP | Microsoft Corporation |
|---|---|
| Usage Type | Data Center/Web Hosting/Transit |
| ASN | AS8075 |
| Domain Name | microsoft.com |
| Country | ๐บ๐ธ United States of America |
| City | Des Moines, Iowa |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 20.112.235.167
This IP address has been reported a total of 234 times from 94 distinct sources. 20.112.235.167 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 110 reports; Germany with 27 reports; Brazil with 17 reports. The most common categories in these recent reports were: Port Scan 202 times; Brute-Force 29 times; Hacking 26 times; Web App Attack 16 times; SSH 10 times; Other 22 times.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐บ๐ธ RAP |
2026-09-25 10:07:57 UTC Unauthorized activity to TCP port 8080. Web App
|
Port Scan Web App Attack | ||
| ๐บ๐ธ MPL |
tcp/5984 (2 or more attempts)
|
Port Scan | ||
| ๐บ๐ธ xmission.com |
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp/2638 (2 or more attempts)
|
Port Scan | ||
| ๐ณ๐ฑ donarev419 |
Connection to port 5660 with data transfer.
Data preview:
|
Port Scan Hacking | ||
| ๐บ๐ธ jkhorvath.com |
Request for URL /autodiscover/autodiscover.json?@zdi/Powershell
|
Phishing Brute-Force Web App Attack | ||
| ๐บ๐ธ RAP |
2026-09-25 02:00:33 UTC Unauthorized activity to TCP port 3306.
|
Port Scan | ||
| ๐ซ๐ท GoodOldTOS |
Connection to FTP honeypot
|
Hacking | ||
| ๐ฉ๐ช Jochen Pretli |
connection to honeypot
|
Email Spam Port Scan | ||
| ๐บ๐ธ MPL |
tcp/50070 (2 or more attempts)
|
Port Scan | ||
| ๐ง๐ท dominioz |
|
Brute-Force Web App Attack | ||
| ๐บ๐ธ xmission.com |
|
Port Scan SSH Brute-Force | ||
| ๐บ๐ธ MPL |
tcp/2404
|
Port Scan | ||
| ๐บ๐ธ MPL |
tcp ports: 2404,143 (3 or more attempts)
|
Port Scan | ||
| ๐ง๐ท noconex |
|
Port Scan Brute-Force SSH |
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ