20.124.87.0

Classification: Whitelisted

20.124.87.0 is a whitelisted (trusted) IP address. Reported by 6 threat sources, last seen 2026-09-07. Network: AS8075 Microsoft Corporation.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-08-26 09:01:59 2026-09-07 09:02:04 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-08-26 09:01:58 2026-09-07 09:02:02 malicious-activity
Unknown malware ThreatFox Abuse.ch 2026-09-04 23:11:23 2026-09-04 23:25:30 malicious-activity
Malicious Host CIArmy 2026-08-26 20:00:14 2026-09-03 20:00:16 attacker malicious-activity
Matched whitelist source: Microsoft_asn Maltiverse 2026-08-25 08:01:14 2026-08-25 08:01:14 benign
HTTP bot Blocklist.de 2026-08-25 08:00:27 2026-08-25 08:00:27 attacker malicious-activity
Malicious Host HoneyDB 2026-08-25 00:00:00 2026-08-25 00:00:00 attacker malicious-activity

Tags

attacker spam bruteforce bot port:44962 suricata t-pot

Whois information

AS name
AS8075 Microsoft Corporation
Registrant
Microsoft Corporation
City
Washington
State
DC
Postal code
20005
Country
US — United States 🇺🇸
First indexed
2026-08-25 08:00:27
Last updated
2026-09-07 09:02:11