52.165.92.166

Recent Activity This IP has received recent abuse reports, which causes the score to increase.
Abuse confidence score ?
100% Critical
98 reports
47 reporters ยท latest 5 hours ago
ISP Microsoft Corporation
Usage Type Data Center/Web Hosting/Transit
ASN AS8075
Hostname(s) azpdcgtb9ksa.stretchoid.com
Domain Name microsoft.com
Country ๐Ÿ‡บ๐Ÿ‡ธ United States of America
City Des Moines, Iowa

ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Reports Activity

Example preview

Report Categories (Last 60 Days)

Example preview

Top Reporter Countries (Last 60 Days)

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 52.165.92.166

This IP address has been reported a total of 98 times from 47 distinct sources. 52.165.92.166 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 51 reports; Germany with 14 reports; Brazil with 5 reports. The most common categories in these recent reports were: Port Scan 86 times; Hacking 21 times; Brute-Force 11 times; SSH 6 times; Web App Attack 3 times; Other 7 times.

Reporter IoA Timestamp (UTC) Comment Categories
Anonymous
unsolicited connect TCP dport 50070 (sport 45407)
Hacking
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/3011 (2 or more attempts)
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช _ArminS_
SP-Scan 37818:118 detected 2026.09.21 17:24:02 blocked until 2026.11.10 09:26:49
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ donarev419
Port scan detected on port 8005 (connection without data transfer)
Port Scan
๐Ÿ‡ฆ๐Ÿ‡น hxsain
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ xmission.com
Port Scan Ping of Death
๐Ÿ‡ณ๐Ÿ‡ฑ 0xffffffff
f2b:apache-badbots; UA:'Mozilla/5.0 zgrab/0.x'; note:wrong-host; uri:/version HTTP/1.1;
Bad Web Bot
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp/4433
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-21 11:57:04 UTC Unauthorized activity to TCP port 9200.
Port Scan
๐Ÿ‡จ๐Ÿ‡ฆ alexbfr
Fail2Ban report from custom-honeypot; automated FTP honeypot detection.
FTP Brute-Force
๐Ÿ‡บ๐Ÿ‡ธ MPL
tcp ports: 8088,8140 (2 or more attempts)
Port Scan
๐Ÿ‡ง๐Ÿ‡ท chronos
Port Scan Exploited Host Hacking Brute-Force
๐Ÿ‡ซ๐Ÿ‡ท EvoX
๐Ÿ›ก๏ธ Honeypot [bsts-tpot-hive]: Empty payload (likely service probe); 2086 [2] TCP
Port Scan
๐Ÿ‡ฉ๐Ÿ‡ช iNetWorker
firewall-block, port(s): 631/tcp
Port Scan
๐Ÿ‡บ๐Ÿ‡ธ RAP
2026-09-21 05:38:36 UTC Unauthorized activity to TCP port 22. SSH
SSH

Showing 1 to 15 of 98 reports

Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐Ÿšฉ

Recently Reported IPs:

๐Ÿ‡ฎ๐Ÿ‡ฉ 182.23.26.67
๐Ÿ‡ญ๐Ÿ‡ท 79.127.144.203
๐Ÿ‡บ๐Ÿ‡ธ 20.29.18.150
๐Ÿ‡ญ๐Ÿ‡ฐ 202.155.236.242
๐Ÿ‡ฒ๐Ÿ‡ฝ 189.149.62.226
๐Ÿ‡ณ๐Ÿ‡ฑ 185.218.86.25
๐Ÿ‡ฆ๐Ÿ‡ท 181.117.72.39
๐Ÿ‡บ๐Ÿ‡ธ 162.216.150.10
๐Ÿ‡บ๐Ÿ‡ธ 146.190.119.189
๐Ÿ‡ธ๐Ÿ‡ฌ 129.212.230.127
๐Ÿ‡ต๐Ÿ‡ฑ 109.205.211.23
๐Ÿ‡ณ๐Ÿ‡ฑ 109.160.32.116
๐Ÿ‡ฆ๐Ÿ‡บ 103.159.82.118
๐Ÿ‡ฎ๐Ÿ‡ฉ 103.31.250.251
๐Ÿ‡บ๐Ÿ‡ธ 64.62.197.74
๐Ÿ‡บ๐Ÿ‡ธ 64.62.197.49
๐Ÿ‡ซ๐Ÿ‡ท 51.178.84.57
๐Ÿ‡ณ๐Ÿ‡ฑ 45.148.10.240
๐Ÿ‡บ๐Ÿ‡ธ 16.216.88.127
๐Ÿ‡จ๐Ÿ‡ณ 14.103.118.186