20.238.106.24

Classification: Malicious

20.238.106.24 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-12. Network: AS8075 Microsoft Corporation.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-01-01 14:15:52 2026-09-12 16:04:00 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:05:39 2026-09-11 16:03:59 attacker malicious-activity
Malicious Host AbuseIPDB 2025-12-30 13:59:36 2026-01-17 01:44:23 compromised malicious-activity
HTTP Attacker Blocklist.de 2026-01-01 09:13:52 2026-01-01 19:07:02 malicious-activity
SSH Attacker AbuseIPDB 2025-12-30 14:22:28 2025-12-31 23:00:44 malicious-activity
Hacking AbuseIPDB 2025-12-30 13:46:10 2025-12-31 23:00:44 malicious-activity
HTTP Attacker AbuseIPDB 2025-12-30 13:05:15 2025-12-31 23:00:44 malicious-activity
Bruteforce AbuseIPDB 2025-12-30 13:10:05 2025-12-31 04:41:28 malicious-activity
HTTP Scrapper AbuseIPDB 2025-12-30 13:40:05 2025-12-31 03:00:10 anomalous-activity
Port Scanner AbuseIPDB 2025-12-30 14:49:49 2025-12-30 23:57:52 anomalous-activity
DDoS Attacker AbuseIPDB 2025-12-30 14:41:24 2025-12-30 21:09:04 malicious-activity
SQL Injection AbuseIPDB 2025-12-30 14:07:44 2025-12-30 19:31:26 malicious-activity

Tags

apache ddos rfi attacker abuse

Whois information

AS name
AS8075 Microsoft Corporation
Registrant
Microsoft Corporation
City
Dublin
Postal code
D01 P5P5
Country
IE — Ireland 🇮🇪
First indexed
2026-01-01 07:01:25
Last updated
2026-09-12 16:04:00