AbuseIPDB » 20.244.5.130
20.244.5.130 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 37% : ?
ISP
Microsoft Corporation
Usage Type
Data Center/Web Hosting/Transit
ASN
AS8075
Domain Name
microsoft.com
Country
๐ฎ๐ณ
India
City
Pune, Maharashtra
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 20.244.5.130 :
This IP address has been reported a total of
7
times from
7 distinct
sources.
20.244.5.130 was first reported on
July 10th 2026 , and the most recent report was
2 weeks ago .
Old Reports:
The most recent abuse report for this IP address is from
2 weeks ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐บ๐ธ
hostmach
2026-07-10 22:05:05
(2 weeks ago)
(smtpauth) Failed SMTP AUTH login from 20.244.5.130 (IN/India/-): 5 in the last 3600 secs; Ports: *; ...
show more
(smtpauth) Failed SMTP AUTH login from 20.244.5.130 (IN/India/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2026-07-10 17:42:04 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:45052: 535 Incorrect authentication data ([email protected] )
2026-07-10 17:47:59 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:47178: 535 Incorrect authentication data ([email protected] )
2026-07-10 17:53:54 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:32776: 535 Incorrect authentication data ([email protected] )
2026-07-10 17:59:20 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:46324: 535 Incorrect authentication data ([email protected] )
2026-07-10 18:05:03 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:57868: 535 Incorrect authentication data ([email protected] )
show less
Brute-Force
SSH
๐ง๐ท
hostseries
2026-07-10 21:51:48
(2 weeks ago)
Trigger: LF_SMTPAUTH
Brute-Force
๐ง๐ท
LM Security
2026-07-10 21:45:03
(2 weeks ago)
2026-07-10 18:41:10 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:53342: 535 Incor ...
show more
2026-07-10 18:41:10 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:53342: 535 Incorrect authentication data (set_id=recepcao@[redacted].com.br)
2026-07-10 18:31:06 dovecot_login authenticator failed for H=(ADMIN) [20.244.5.130]:51674: 535 Incorrect authentication data (set_id=recepcao@[redacted].com.br)
show less
Brute-Force
๐ง๐ท
SvrAdmin
2026-07-10 21:40:34
(2 weeks ago)
[315] (smtpauth) Failed SMTP AUTH login from 20.244.5.130 (IN/India/-): 5 in the last 3600 secs; Por ...
show more
[315] (smtpauth) Failed SMTP AUTH login from 20.244.5.130 (IN/India/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: Jul 10 17:52:56 cwp01 postfix/smtpd[17849]: warning: unknown[20.244.5.130]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Jul 10 17:53:08 cwp01 postfix/smtpd[17849]: warning: unknown[20.244.5.130]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Jul 10 18:19:08 cwp01 postfix/smtpd[21980]: warning: unknown[20.244.5.130]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Jul 10 18:31:00 cwp01 postfix/smtpd[22974]: warning: unknown[20.244.5.130]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Jul 10 18:40:31 cwp01 postfix/smtpd[24130]: warning: unknown[20.244.5.130]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
show less
Port Scan
Hacking
Brute-Force
Exploited Host
๐บ๐ธ
xmission.com
2026-07-10 18:38:38
(2 weeks ago)
Blocked by UFW (TCP on 587)
Source port: 33350
TTL: 46
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 587)
Source port: 33350
TTL: 46
Packet length: 60
TOS: 0x00
This report (for 20.244.5.130) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐จ๐ฆ
Julio Covolato
2026-07-10 15:50:03
(2 weeks ago)
Imap or Submission login brute-force attacks.
Brute-Force
Anonymous
2026-07-10 15:07:02
(2 weeks ago)
BruteForce IMAP/POP3/SMTP
Brute-Force
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: