20.166.18.90

Classification: Malicious

20.166.18.90 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-03. Network: AS8075 Microsoft Corporation.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-04-20 12:04:51 2026-09-03 16:00:47 attacker malicious-activity
HTTP Attacker Blocklist.de 2026-04-20 03:00:19 2026-04-21 03:01:06 malicious-activity
Malicious Host AbuseIPDB 2026-04-19 11:39:07 2026-04-20 21:59:54 compromised malicious-activity
HTTP Attacker AbuseIPDB 2026-04-18 23:41:15 2026-04-20 00:01:07 malicious-activity
Hacking AbuseIPDB 2026-04-19 08:32:23 2026-04-19 22:05:04 malicious-activity
SSH Attacker AbuseIPDB 2026-04-19 08:38:39 2026-04-19 22:00:38 malicious-activity
HTTP Scrapper AbuseIPDB 2026-04-19 07:28:47 2026-04-19 21:51:36 anomalous-activity
Bruteforce AbuseIPDB 2026-04-19 07:15:03 2026-04-19 14:37:35 malicious-activity
Port Scanner AbuseIPDB 2026-04-19 08:41:55 2026-04-19 13:35:00 anomalous-activity
Phishing AbuseIPDB 2026-04-19 10:06:33 2026-04-19 10:06:33 malicious-activity
DDoS Attacker AbuseIPDB 2026-04-19 07:40:01 2026-04-19 09:07:05 malicious-activity
SQL Injection AbuseIPDB 2026-04-19 07:28:47 2026-04-19 07:28:47 malicious-activity
Malicious Host HoneyDB 2026-04-19 00:00:00 2026-04-19 00:00:00 malicious-activity

Tags

apache ddos rfi attacker abuse

Whois information

AS name
AS8075 Microsoft Corporation
Registrant
Microsoft Corporation
City
Dublin
Postal code
D01 P5P5
Country
IE — Ireland 🇮🇪
First indexed
2026-04-20 00:14:19
Last updated
2026-09-03 16:00:51