20.238.106.24
Classification: Malicious
20.238.106.24 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-12. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-01-01 14:15:52 | 2026-09-12 16:04:00 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:05:39 | 2026-09-11 16:03:59 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2025-12-30 13:59:36 | 2026-01-17 01:44:23 | compromised malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-01-01 09:13:52 | 2026-01-01 19:07:02 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2025-12-30 14:22:28 | 2025-12-31 23:00:44 | malicious-activity | |
| Hacking | AbuseIPDB | 2025-12-30 13:46:10 | 2025-12-31 23:00:44 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2025-12-30 13:05:15 | 2025-12-31 23:00:44 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2025-12-30 13:10:05 | 2025-12-31 04:41:28 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2025-12-30 13:40:05 | 2025-12-31 03:00:10 | anomalous-activity | |
| Port Scanner | AbuseIPDB | 2025-12-30 14:49:49 | 2025-12-30 23:57:52 | anomalous-activity | |
| DDoS Attacker | AbuseIPDB | 2025-12-30 14:41:24 | 2025-12-30 21:09:04 | malicious-activity | |
| SQL Injection | AbuseIPDB | 2025-12-30 14:07:44 | 2025-12-30 19:31:26 | malicious-activity |
Tags
apache ddos rfi attacker abuseWhois information
- AS name
- AS8075 Microsoft Corporation
- Registrant
- Microsoft Corporation
- City
- Dublin
- Postal code
- D01 P5P5
- Country
- IE — Ireland 🇮🇪
- First indexed
- 2026-01-01 07:01:25
- Last updated
- 2026-09-12 16:04:00