AbuseIPDB » 52.161.82.86
52.161.82.86 was found in our database!
This IP was reported 8 times. Confidence of
Abuse
is 48% : ?
ISP
Microsoft Corporation
Usage Type
Data Center/Web Hosting/Transit
ASN
AS8075
Domain Name
microsoft.com
Country
๐บ๐ธ
United States of America
City
Cheyenne, Wyoming
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 52.161.82.86 :
This IP address has been reported a total of
8
times from
7 distinct
sources.
52.161.82.86 was first reported on
May 18th 2026 , and the most recent report was
1 day ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ณ๐ฑ
Roderic
2026-06-08 15:08:26
(1 day ago)
(apache_scanners-2) Failed apache-scanners trigger with match [redacted])
Port Scan
๐ธ๐ช
KIDOS
2026-06-08 15:06:54
(1 day ago)
CrowdSec detected malicious activity
DDoS Attack
๐ธ๐ช
KIDOS
2026-06-08 14:24:25
(1 day ago)
IIS malicious activity: high_400_error_rate (100% of requests are 400 errors)
Web App Attack
Anonymous
2026-06-08 13:53:38
(1 day ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2026-06-08 13:25:47
(1 day ago)
2026-06-08T14:25:47.262624+01:00 vps kernel: [42665309.637041] [PORTSCAN DETECTED] IN=ens3 OUT= MAC= ...
show more
2026-06-08T14:25:47.262624+01:00 vps kernel: [42665309.637041] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=fa:16:3e:66:f6:24:02:37:19:0d:c2:f3:08:00 SRC=52.161.82.86 DST=54.37.14.118 LEN=60 TOS=0x00 PREC=0x00 TTL=38 ID=4679 DF PROTO=TCP SPT=53027 DPT=2087 WINDOW=64240 RES=0x00 SYN URGP=0
...
show less
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-08 13:19:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 52.161.82.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 52.161.82.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 09:19:41.097838 2026] [security2:error] [pid 5978:tid 5998] [client 52.161.82.86:52418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.133"] [uri "/.git/HEAD"] [unique_id "aibBbXfbIUCiKyvxKKdbVwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-06-08 13:13:56
(1 day ago)
Too many 404 requests [BY]
Web App Attack
๐ฉ๐ช
2048
2026-05-18 15:44:50
(3 weeks ago)
2026-05-18T17:44:46.317052+02:00 machodeer kernel: [1827003.032668] [UFW BLOCK] IN=ens3 OUT= MAC=RED ...
show more
2026-05-18T17:44:46.317052+02:00 machodeer kernel: [1827003.032668] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=52.161.82.86 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=41 ID=54289 DF PROTO=TCP SPT=15420 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
2026-05-18T17:44:47.329333+02:00 machodeer kernel: [1827004.043936] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=52.161.82.86 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=41 ID=54290 DF PROTO=TCP SPT=15420 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
2026-05-18T17:44:48.353093+02:00 machodeer kernel: [1827005.068353] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=52.161.82.86 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=41 ID=54291 DF PROTO=TCP SPT=15420 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
show less
Port Scan
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: