AbuseIPDB » 20.84.165.201

20.84.165.201
Recent Activity This IP has received recent abuse reports, which causes the score to increase.
56 reports found in our database
100% Critical
Abuse confidence score ?
ISP
Microsoft Corporation
Usage Type
Data Center/Web Hosting/Transit
ASN
Domain Name
microsoft.com
Country
🇺🇸 United States of America
City
Des Moines, Iowa

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 20.84.165.201:

This IP address has been reported a total of 56 times from 26 distinct sources. 20.84.165.201 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 33 reports; Germany with 9 reports; Brazil with 2 reports. The most common categories in these recent reports were: Port Scan 48 times; Web App Attack 7 times; Hacking 7 times; Brute-Force 6 times; SSH 3 times; Other 3 times.

Reporter IoA Timestamp (UTC) Comment Categories
🇲🇳 Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized traffic (104 bytes of payload); 10911 [1] TCP
Port Scan
Anonymous
2000/tcp (1 or more attempts)
Port Scan
🇩🇪 iNetWorker
firewall-block, port(s): 5986/tcp
Port Scan
🇺🇸 MPL
tcp/7443 (2 or more attempts)
Port Scan
🇩🇪 Admins@FBN
FW-PortScan: Traffic Blocked srcport=45382 dstport=18080
Port Scan
🇳🇱 donarev419
Connection to port 8834 with data transfer. Data preview: 
Port Scan Hacking
🇧🇷 noconex
Port Scan Brute-Force SSH
🇺🇸 MPL
tcp/9529
Port Scan
Anonymous
Port Scan Brute-Force
🇺🇸 xmission.com
Port Scan
🇺🇸 RAP
2026-08-29 21:21:31 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
🇺🇸 MPL
tcp/7000 (2 or more attempts)
Port Scan
🇺🇸 drewf.ink
[17:33] Connected to RDP honeypot
Brute-Force Hacking
🇺🇸 MPL
tcp/11743 (2 or more attempts)
Port Scan
Anonymous
unsolicited connect TCP dport 5094 (sport 53294)
Hacking

Showing 1 to 15 of 56 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇩🇪 167.94.146.46
🇹🇼 61.64.14.71
🇨🇳 47.107.140.30
🇩🇪 195.182.16.23
🇳🇱 176.65.148.136
🇫🇮 147.185.133.195
🇿🇦 102.217.240.172
🇷🇴 2.57.121.112