20.112.235.167

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
234 reports
94 reporters ยท latest 28 minutes ago
ISP Microsoft Corporation
Usage Type Data Center/Web Hosting/Transit
ASN AS8075
Domain Name microsoft.com
Country ๐Ÿ‡บ๐Ÿ‡ธ United States of America
City Des Moines, Iowa

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 20.112.235.167

This IP address has been reported a total of 234 times from 94 distinct sources. 20.112.235.167 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 110 reports; Germany with 27 reports; Brazil with 17 reports. The most common categories in these recent reports were: Port Scan 202 times; Brute-Force 29 times; Hacking 26 times; Web App Attack 16 times; SSH 10 times; Other 22 times.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-25 10:07:57 UTC Unauthorized activity to TCP port 8080. Web App
Port Scan Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/5984 (2 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/2638 (2 or more attempts)
Port Scan
๐Ÿ‡ณ๐Ÿ‡ฑ donarev419
Connection to port 5660 with data transfer. Data preview:
Port Scan Hacking
๐Ÿ‡บ๐Ÿ‡ธ jkhorvath.com
Request for URL /autodiscover/autodiscover.json?@zdi/Powershell
Phishing Brute-Force Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-25 02:00:33 UTC Unauthorized activity to TCP port 3306.
Port Scan
๐Ÿ‡ซ๐Ÿ‡ท GoodOldTOS
Connection to FTP honeypot
Hacking
๐Ÿ‡ฉ๐Ÿ‡ช Jochen Pretli
connection to honeypot
Email Spam Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/50070 (2 or more attempts)
Port Scan
๐Ÿ‡ง๐Ÿ‡ท dominioz
Brute-Force Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan SSH Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/2404
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 2404,143 (3 or more attempts)
Port Scan
๐Ÿ‡ง๐Ÿ‡ท noconex
Port Scan Brute-Force SSH

Showing 31 to 45 of 234 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฌ๐Ÿ‡ง 2a06:4880:8000::a9
๐Ÿ‡ฐ๐Ÿ‡ท 220.73.90.61
๐Ÿ‡บ๐Ÿ‡ฆ 194.0.89.139
๐Ÿ‡ป๐Ÿ‡ช 190.153.10.127
๐Ÿ‡ฉ๐Ÿ‡ช 176.119.150.236
๐Ÿ‡บ๐Ÿ‡ธ 162.216.150.173
๐Ÿ‡ธ๐Ÿ‡ฌ 161.118.211.34
๐Ÿ‡ธ๐Ÿ‡ฌ 161.118.193.237
๐Ÿ‡จ๐Ÿ‡ณ 121.227.152.171
๐Ÿ‡บ๐Ÿ‡ธ 96.78.175.36
๐Ÿ‡ฏ๐Ÿ‡ต 47.245.61.102
๐Ÿ‡ฎ๐Ÿ‡ณ 20.219.14.152
๐Ÿ‡ฉ๐Ÿ‡ช 213.209.159.154
๐Ÿ‡บ๐Ÿ‡ฆ 185.176.112.14
๐Ÿ‡บ๐Ÿ‡ธ 172.116.137.200
๐Ÿ‡ธ๐Ÿ‡ฌ 161.118.217.10
๐Ÿ‡ฒ๐Ÿ‡ฆ 160.179.113.1
๐Ÿ‡ฏ๐Ÿ‡ต 128.1.65.42
๐Ÿ‡บ๐Ÿ‡ธ 104.234.32.218
๐Ÿ‡ท๐Ÿ‡บ 78.36.4.139