AbuseIPDB » 52.159.245.164

52.159.245.164 was found in our database!

This IP was reported 21 times. Confidence of Abuse is 86%: ?

86%
ISP Microsoft Corporation
Usage Type Data Center/Web Hosting/Transit
ASN AS8075
Domain Name microsoft.com
Country ๐Ÿ‡บ๐Ÿ‡ธ United States of America
City San Jose, California

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

IP Abuse Reports for 52.159.245.164:

This IP address has been reported a total of 21 times from 20 distinct sources. 52.159.245.164 was first reported on , and the most recent report was .

Recent Reports: We have received reports of abusive activity from this IP address within the last week. It is potentially still actively engaged in abusive activities.

Reporter IoA Timestamp (UTC) Comment Categories
๐Ÿ‡ง๐Ÿ‡ท SOC-BR
Attack detected by Fortinet - web_server: HTPasswd.Access - 2026-06-02 08:15:44 - Source Port 50130
Port Scan Hacking
๐Ÿ‡ฎ๐Ÿ‡ช AutosOnShow
blocked for webapp attack | path requested: /.git/config | seen at 2026-06-02 14:01:39.271 |
Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-06-02 13:58:03 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan Web App Attack
Anonymous
Port Scan
Anonymous
Unauthorized connection attempt
Port Scan Hacking Exploited Host
๐Ÿ‡ซ๐Ÿ‡ท dynamix
Multiple WAF Violations
Web App Attack
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp port scan (8 or more attempts)
Port Scan
๐Ÿ‡น๐Ÿ‡ท SeczarSecureOps
Seczar SecureOps โ€” Port Scan Detection (6 events) โ€” quarantined 43200m on fgdcapi
Port Scan
๐Ÿ‡ฆ๐Ÿ‡บ 2000cn.com.au
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack Hacking
๐Ÿ‡ฌ๐Ÿ‡ง D3monite
Attempted Brute Force (whostmgrd)
Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ ipblock.com
IPBlock protected site ID [1365-l]. Exploit request, vulnerability scanner.
Hacking Bad Web Bot Web App Attack
๐Ÿ‡ง๐Ÿ‡ท SOCBR
IPS: Sensitive Configuration File Disclosure.
Hacking
๐Ÿ‡ฉ๐Ÿ‡ช dbmwebdesign
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐Ÿ‡น๐Ÿ‡ผ kk_it_man
ET WEB_SERVER WEB-PHP phpinfo access GPL WEB_SERVER .htpasswd access
Port Scan
๐Ÿ‡ฌ๐Ÿ‡ง PeravixGroup
Web App Attack

Showing 1 to 15 of 21 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡จ๐Ÿ‡ณ 222.246.43.39
๐Ÿ‡ฏ๐Ÿ‡ต 153.211.168.116
๐Ÿ‡ซ๐Ÿ‡ฎ 147.185.133.196
๐Ÿ‡ณ๐Ÿ‡ฑ 80.82.77.139
๐Ÿ‡ธ๐Ÿ‡ฌ 45.82.78.103
๐Ÿ‡ฌ๐Ÿ‡ง 45.82.76.115
๐Ÿ‡บ๐Ÿ‡ธ 45.55.153.86
๐Ÿ‡บ๐Ÿ‡ธ 20.221.69.50
๐Ÿ‡จ๐Ÿ‡ณ 220.189.196.134
๐Ÿ‡ฌ๐Ÿ‡ง 213.166.84.57
๐Ÿ‡บ๐Ÿ‡ธ 207.90.244.17
๐Ÿ‡ณ๐Ÿ‡ฑ 195.211.191.112
๐Ÿ‡ง๐Ÿ‡ด 190.129.122.12
๐Ÿ‡ฒ๐Ÿ‡ฝ 186.96.145.241
๐Ÿ‡ฌ๐Ÿ‡ง 185.247.137.118
๐Ÿ‡ฎ๐Ÿ‡ณ 172.217.34.220
๐Ÿ‡ญ๐Ÿ‡ฐ 165.154.92.172
๐Ÿ‡ฌ๐Ÿ‡ง 35.203.211.217
๐Ÿ‡ง๐Ÿ‡ท 170.0.74.225
๐Ÿ‡ซ๐Ÿ‡ท 163.172.27.20