172.104.31.42
Classification: Malicious
172.104.31.42 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-07. Network: AS63949 Akamai Connected Cloud.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Bruteforce login attacker | Blocklist.de | 2026-09-06 09:00:15 | 2026-09-07 09:00:15 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-09-06 07:00:15 | 2026-09-07 07:00:15 | attacker malicious-activity | |
| Malicious Host | CIArmy | 2023-06-08 07:29:31 | 2023-06-09 07:36:02 | malicious-activity | |
| Malicious Host | HoneyDB | 2023-05-17 00:00:00 | 2023-05-17 00:00:00 | malicious-activity |
Tags
apache ddos rfi attacker login bruteforce bot joomla wordpressWhois information
- AS name
- AS63949 Akamai Connected Cloud
- AS registry
- arin
- AS date
- 2015-06-19 00:00:00
- AS CIDR
- 172.104.16.0/20
- CIDR
- 172.104.0.0/15
- Registrant
- Akamai Technologies, Inc.
- Address
- 145 Broadway
- City
- Humble
- State
- TX
- Postal code
- 77338
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2023-05-17 21:24:33
- Last updated
- 2026-09-07 09:00:15
Malicious IPs in the same CIDR
172.104.30.66 172.104.19.160 172.104.24.103 172.104.24.4 172.104.31.42 172.104.30.190 172.104.17.5 172.104.31.208 172.104.20.119 172.104.30.97