20.163.15.236

Classification: Whitelisted

20.163.15.236 is a whitelisted (trusted) IP address. Reported by 5 threat sources, last seen 2026-08-12. Network: AS8075 Microsoft Corporation.

Current activity

  • Known attacker β€” Seen launching attacks over the Internet.
  • Known scanner β€” Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-01-31 02:18:58 2026-08-12 09:01:56 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-01-31 02:18:46 2026-08-12 09:01:54 attacker malicious-activity
Malicious Host CIArmy 2026-01-30 15:03:16 2026-08-10 20:00:21 attacker malicious-activity
Matched whitelist source: Microsoft_asn Maltiverse 2026-08-09 13:33:19 2026-08-09 13:33:19 benign
Hacking AbuseIPDB 2026-05-12 00:22:48 2026-08-09 06:18:58 attacker malicious-activity
Port Scanner AbuseIPDB 2026-05-11 18:23:01 2026-08-09 06:18:58 anomalous-activity attacker malicious-activity reconnaissance
Bruteforce AbuseIPDB 2026-05-12 10:41:55 2026-08-09 05:44:54 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-05-19 14:15:26 2026-08-07 10:11:33 attacker malicious-activity
SIP Attacker AbuseIPDB 2026-05-12 10:41:55 2026-08-06 05:26:27 attacker malicious-activity
Malicious Host AbuseIPDB 2026-02-01 23:08:21 2026-08-04 22:11:52 attacker compromised malicious-activity
HTTP Scrapper AbuseIPDB 2026-05-30 18:03:42 2026-08-02 23:37:14 anomalous-activity attacker malicious-activity
Mail Spammer AbuseIPDB 2026-05-27 06:20:02 2026-07-31 04:51:00 attacker malicious-activity
DDoS Attacker AbuseIPDB 2026-05-24 00:03:09 2026-07-09 15:23:05 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-05-20 07:50:02 2026-06-11 10:00:02 attacker malicious-activity
IMAP Attacker AbuseIPDB 2026-05-27 06:20:02 2026-05-29 13:21:26 attacker malicious-activity
IoT Attacker AbuseIPDB 2026-05-27 08:39:26 2026-05-27 08:39:26 malicious-activity
Known Attacker AbuseIPDB 2026-05-24 00:03:09 2026-05-24 00:03:09 attacker malicious-activity
SQL Injection AbuseIPDB 2026-05-17 02:35:54 2026-05-17 02:35:54 attacker malicious-activity
Malicious Host HoneyDB 2026-01-31 00:00:00 2026-03-28 00:00:00 malicious-activity
Suspicious Host AbuseIPDB 2026-01-31 00:05:08 2026-02-01 00:13:11 anomalous-activity

Whois information

AS name
AS8075 Microsoft Corporation
Registrant
Microsoft Corporation
City
Phoenix
State
AZ
Postal code
85004
Country
US β€” United States πŸ‡ΊπŸ‡Έ
First indexed
2026-01-30 15:03:16
Last updated
2026-08-12 09:02:22