20.25.153.50

Activity Trending Down This IP hasn't received reports recently, which causes the score to decay.
Abuse confidence score ?
31% Elevated
38 reports
31 reporters Β· latest 1 week ago
ISP Microsoft Corporation
Usage Type Data Center/Web Hosting/Transit
ASN AS8075
Domain Name microsoft.com
Country πŸ‡ΊπŸ‡Έ United States of America
City Phoenix, Arizona

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 20.25.153.50

This IP address has been reported a total of 38 times from 31 distinct sources. 20.25.153.50 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: Germany with 4 reports; France with 2 reports; Netherlands with 2 reports. The most common categories in these recent reports were: Port Scan 7 times; Web App Attack 6 times; Hacking 4 times; Brute-Force 3 times; Bad Web Bot 2 times; Other 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
πŸ‡ΉπŸ‡Ό neithnet
Malicious web scan
Hacking Web App Attack
πŸ‡ΊπŸ‡Έ RAP
2026-09-01 18:39:29 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan Web App Attack
πŸ‡©πŸ‡ͺ www.fransveldman.world
Fetched browser challenge page 10 times in <2h without solving. Likely bad bot.
Bad Web Bot
πŸ‡ΉπŸ‡­ Sawasdee
Unwanted checking 80 or 443 port ...
Bad Web Bot
πŸ‡³πŸ‡± Selckie
fail2ban: NGINX unusual impact
Web App Attack
Anonymous
IP & Port Scan.
SSH Port Scan Brute-Force
πŸ‡ΊπŸ‡Έ schematics.cc
Port Scan
πŸ‡¬πŸ‡§ Smish
Web App Attack
πŸ‡«πŸ‡· Teufel100
ModSecurity rejected a query
Brute-Force Hacking Web App Attack
πŸ‡©πŸ‡ͺ Admins@FBN
FW-PortScan: Traffic Blocked srcport=41988 dstport=2083
Port Scan
πŸ‡«πŸ‡· dynamix
Multiple WAF Violations
Web App Attack
Anonymous
denied traffic to a honeypot network. destination port 2096.
Port Scan Hacking
πŸ‡³πŸ‡± COMPLEX
Unsolicited TCP traffic | Action: DROP | Port 2078
Brute-Force
πŸ‡·πŸ‡Έ Scan
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan Hacking
πŸ‡ΉπŸ‡· SeczarSecureOps
Auto-blocked by Seczar SecureOps β€” Port Scan Detection (10 events in 10min) at 2026-07-26 00:27
Port Scan

Showing 1 to 15 of 38 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

πŸ‡ͺπŸ‡Ή 196.189.19.65
πŸ‡³πŸ‡± 193.47.62.69
πŸ‡ΊπŸ‡Έ 172.237.150.22
πŸ‡»πŸ‡³ 171.244.201.80
πŸ‡ΊπŸ‡Έ 167.172.215.179
πŸ‡ΊπŸ‡Έ 143.42.1.52
πŸ‡³πŸ‡± 130.12.180.65
πŸ‡¨πŸ‡³ 112.82.218.176
πŸ‡³πŸ‡± 109.160.32.63
πŸ‡«πŸ‡· 91.196.152.32
πŸ‡·πŸ‡΄ 80.94.92.55
πŸ‡ΊπŸ‡Έ 72.215.33.16
πŸ‡ͺπŸ‡¬ 41.32.85.58
πŸ‡§πŸ‡ͺ 34.14.80.215
πŸ‡·πŸ‡΄ 2.57.122.209
πŸ‡ΊπŸ‡Έ 185.191.171.19
πŸ‡³πŸ‡¬ 165.154.11.202
πŸ‡ΊπŸ‡Έ 157.230.234.202
πŸ‡ΊπŸ‡Έ 147.185.132.100
πŸ‡ΊπŸ‡Έ 134.33.97.154