20.166.18.90
Classification: Malicious
20.166.18.90 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-03. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-04-20 12:04:51 | 2026-09-03 16:00:47 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-04-20 03:00:19 | 2026-04-21 03:01:06 | malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-04-19 11:39:07 | 2026-04-20 21:59:54 | compromised malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-04-18 23:41:15 | 2026-04-20 00:01:07 | malicious-activity | |
| Hacking | AbuseIPDB | 2026-04-19 08:32:23 | 2026-04-19 22:05:04 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-04-19 08:38:39 | 2026-04-19 22:00:38 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-04-19 07:28:47 | 2026-04-19 21:51:36 | anomalous-activity | |
| Bruteforce | AbuseIPDB | 2026-04-19 07:15:03 | 2026-04-19 14:37:35 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-04-19 08:41:55 | 2026-04-19 13:35:00 | anomalous-activity | |
| Phishing | AbuseIPDB | 2026-04-19 10:06:33 | 2026-04-19 10:06:33 | malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-04-19 07:40:01 | 2026-04-19 09:07:05 | malicious-activity | |
| SQL Injection | AbuseIPDB | 2026-04-19 07:28:47 | 2026-04-19 07:28:47 | malicious-activity | |
| Malicious Host | HoneyDB | 2026-04-19 00:00:00 | 2026-04-19 00:00:00 | malicious-activity |
Tags
apache ddos rfi attacker abuseWhois information
- AS name
- AS8075 Microsoft Corporation
- Registrant
- Microsoft Corporation
- City
- Dublin
- Postal code
- D01 P5P5
- Country
- IE — Ireland 🇮🇪
- First indexed
- 2026-04-20 00:14:19
- Last updated
- 2026-09-03 16:00:51