20.98.165.40

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
238 reports
95 reporters ยท latest 3 hours ago
ISP Microsoft Corporation
Usage Type Data Center/Web Hosting/Transit
ASN AS8075
Domain Name microsoft.com
Country ๐Ÿ‡บ๐Ÿ‡ธ United States of America
City Des Moines, Iowa

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 20.98.165.40

This IP address has been reported a total of 238 times from 95 distinct sources. 20.98.165.40 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 124 reports; Germany with 23 reports; Brazil with 17 reports. The most common categories in these recent reports were: Port Scan 205 times; Hacking 39 times; Brute-Force 32 times; Web App Attack 16 times; SSH 9 times; Other 31 times.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/1270
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 3306,1270 (3 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/8443 (2 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ SuperCores Hosting
[2026-09-28 14:01:02.225153] TELNET/8080 Unautorized connection, Suspicious Mirai Botnet.
IoT Targeted Brute-Force Hacking Port Scan DDoS Attack
๐Ÿ‡ท๐Ÿ‡ธ Smel
SIP/5060 Probe, Scan, BF, Hack -
Fraud VoIP Port Scan Hacking Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/135
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-28 11:34:59 UTC Unauthorized activity to TCP port 135.
Port Scan
๐Ÿ‡ฌ๐Ÿ‡ง kiwi.network
Incessant port scan:
Port Scan Hacking Exploited Host
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/47808
Port Scan
๐Ÿ‡จ๐Ÿ‡ฆ alexbfr
Fail2Ban report from custom-honeypot; automated Telnet honeypot detection.
Brute-Force IoT Targeted
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 5007,119 (3 or more attempts)
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ jkhorvath.com
Request for URL /developmentserver/metadatauploader
Phishing Brute-Force Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/989
Port Scan

Showing 1 to 15 of 238 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฐ๐Ÿ‡ท 222.232.176.7
๐Ÿ‡ณ๐Ÿ‡ฑ 193.47.62.69
๐Ÿ‡ซ๐Ÿ‡ท 85.217.140.42
๐Ÿ‡บ๐Ÿ‡ธ 212.119.47.43
๐Ÿ‡ฎ๐Ÿ‡ถ 204.157.178.196
๐Ÿ‡ฐ๐Ÿ‡ช 196.207.172.145
๐Ÿ‡ฆ๐Ÿ‡ท 181.177.197.174
๐Ÿ‡ช๐Ÿ‡ฌ 156.202.159.10
๐Ÿ‡บ๐Ÿ‡ธ 69.255.3.33
๐Ÿ‡ฌ๐Ÿ‡ง 195.206.182.205
๐Ÿ‡บ๐Ÿ‡ธ 192.241.143.129
๐Ÿ‡ฎ๐Ÿ‡น 185.15.171.96
๐Ÿ‡บ๐Ÿ‡ธ 107.173.85.130
๐Ÿ‡ฆ๐Ÿ‡ช 92.99.174.129
๐Ÿ‡จ๐Ÿ‡ฆ 85.217.149.59
๐Ÿ‡ซ๐Ÿ‡ท 85.217.140.48
๐Ÿ‡ฒ๐Ÿ‡ฝ 34.51.48.61
๐Ÿ‡ต๐Ÿ‡ฑ 2a00:1450:4025:802::8b
๐Ÿ‡ฎ๐Ÿ‡ฉ 212.117.61.60
๐Ÿ‡บ๐Ÿ‡ธ 204.12.242.211