AbuseIPDB » 20.31.191.102
20.31.191.102 was found in our database!
This IP was reported 8 times. Confidence of
Abuse
is 23% : ?
ISP
Microsoft Corporation
Usage Type
Data Center/Web Hosting/Transit
ASN
AS8075
Domain Name
microsoft.com
Country
๐ณ๐ฑ
Netherlands
City
Amsterdam, North Holland
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 20.31.191.102 :
This IP address has been reported a total of
8
times from
7 distinct
sources.
20.31.191.102 was first reported on
April 13th 2026 , and the most recent report was
3 weeks ago .
Old Reports:
The most recent abuse report for this IP address is from
3 weeks ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ท๐ด
Fn4ticHz
2026-05-10 12:22:05
(3 weeks ago)
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
DDoS Attack
Exploited Host
๐ช๐ธ
el-brujo
2026-05-04 02:39:21
(1 month ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows N ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: Microsoft Corporation Country: NL Method: GET Timestamp: 2026-05-04T02:39:21Z ruleId: 9bc0d8e988e545dea9bd4843c4bef55c. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
Anonymous
2026-05-01 22:29:36
(1 month ago)
Aggressive web scan
Web App Attack
๐บ๐ฆ
Hanashiko
2026-05-01 06:25:35
(1 month ago)
DDoS attack traffic detected
DDoS Attack
๐บ๐ธ
COMPLEX
2026-04-19 12:30:24
(1 month ago)
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined ...
show more
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
show less
DDoS Attack
Bad Web Bot
๐ฎ๐น
VHosting
2026-04-16 22:24:48
(1 month ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐บ๐ธ
Veslys
2026-04-16 01:30:36
(1 month ago)
2026-04-16T07:00:21.544857+05:30 8FG1bX5F.nodesty.com sshd-session[3732158]: Failed password for roo ...
show more
2026-04-16T07:00:21.544857+05:30 8FG1bX5F.nodesty.com sshd-session[3732158]: Failed password for root from 20.31.191.102 port 8579 ssh2
2026-04-16T07:00:33.700976+05:30 8FG1bX5F.nodesty.com sshd-session[3732265]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=20.31.191.102 user=root
2026-04-16T07:00:36.010238+05:30 8FG1bX5F.nodesty.com sshd-session[3732265]: Failed password for root from 20.31.191.102 port 8386 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-04-13 22:29:59
(1 month ago)
Aggressive web scan
Web App Attack
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: