AbuseIPDB » 20.55.47.121
20.55.47.121 was found in our database!
This IP was reported 11 times. Confidence of
Abuse
is 27%: ?
| ISP |
Microsoft Corporation
|
| Usage Type |
Data Center/Web Hosting/Transit
|
| ASN |
AS8075
|
| Domain Name |
microsoft.com
|
| Country |
๐บ๐ธ
United States of America
|
| City |
Washington, Virginia
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 20.55.47.121:
This IP address has been reported a total of
11
times from
11 distinct
sources.
20.55.47.121 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
๐ฆ๐น
urnilxfgbez
|
|
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan
|
|
|
๐จ๐ด
adalbertoreyes.org
|
|
CategoryPortScan
|
Port Scan
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 20.55.47.121 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 20.55.47.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 11:53:58.502531 2026] [security2:error] [pid 20468:tid 20468] [client 20.55.47.121:57706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.104"] [uri "/.git/config"] [unique_id "aimIlmMwPW2pejGy8L4cnAAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ต๐ฑ
Wepted
|
|
Port scan detected by honeypot
|
Port Scan
Hacking
|
|
|
๐ซ๐ท
dynamix
|
|
Multiple WAF Violations
|
Web App Attack
|
|
|
๐ซ๐ท
Version Net
|
|
IPS Detection: Spring.Boot.Actuator.Unauthorized.Access
|
Hacking
|
|
|
๐ฉ๐ช
Dennis
|
|
20.55.47.121 has been banned for triggering http-sensitive-files (7 events over 11.145248835s).
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
markawes
|
|
[SynFast] Auto banned by Fail2Ban. Reason: Web vulnerability scan detected. Evidence:
20.55.47.121 ...
show more
[SynFast] Auto banned by Fail2Ban. Reason: Web vulnerability scan detected. Evidence:
20.55.47.121 - - [10/Jun/2026:12:16:12 +0000] "GET /.git/HEAD HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Mobile Safari/537.36"
20.55.47.121 - - [10/Jun/2026:12:16:13 +0000] "GET /.git/config HTTP/1.1" 404 134 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
show less
|
Web App Attack
Port Scan
|
|
|
Anonymous
|
|
Unauthorized connection attempt
|
Port Scan
Hacking
Exploited Host
|
|
|
Anonymous
|
|
[Wed Jun 10 12:49:25.305899 2026] [authz_core:error] [pid 132373:tid 132379] [client 20.55.47.121:58 ...
show more
[Wed Jun 10 12:49:25.305899 2026] [authz_core:error] [pid 132373:tid 132379] [client 20.55.47.121:58416] AH01630: client denied by server configuration: /var/www/html/.env.local
[Wed Jun 10 12:49:28.488942 2026] [authz_core:error] [pid 132373:tid 132381] [client 20.55.47.121:59229] AH01630: client denied by server configuration: /var/www/html/.env.production
[Wed Jun 10 12:49:38.325996 2026] [authz_core:error] [pid 132373:tid 132390] [client 20.55.47.121:59416] AH01630: client denied by server configuration: /var/www/restaurant_menu/wsgi.py
[Wed Jun 10 12:49:42.746518 2026] [authz_core:error] [pid 132373:tid 132380] [client 20.55.47.121:58176] AH01630: client denied by server configuration: /var/www/html/.DS_Store
[Wed Jun 10 12:49:54.066188 2026] [authz_core:error] [pid 132373:tid 132385] [client 20.55.47.121:58194] AH01630: client denied by server configuration: /var/www/html/___proxy_subdomain_whm
...
show less
|
Web App Attack
|
|
|
๐น๐ท
Threat.live
|
|
Threat.live: Web Scan
|
Web App Attack
|
|
Showing 1 to
11
of 11 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: