20.29.77.16

Classification: Whitelisted

20.29.77.16 is a whitelisted (trusted) IP address. Reported by 5 threat sources, last seen 2026-09-05. Network: AS8075 Microsoft Corporation.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.
  • Open proxy — Provides anonymization that can hide an attacker.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-08-17 16:05:43 2026-09-05 16:03:06 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:04:28 2026-09-04 16:04:28 attacker malicious-activity
HTTP bot Blocklist.de 2026-08-17 08:00:50 2026-08-30 08:00:55 attacker malicious-activity
HTTP Attacker Blocklist.de 2026-08-18 07:00:25 2026-08-24 07:00:52 attacker malicious-activity
Bruteforce login attacker Blocklist.de 2026-08-18 09:00:17 2026-08-23 09:00:18 attacker malicious-activity
Malicious Host HoneyDB 2026-08-21 00:00:00 2026-08-21 00:00:00 attacker malicious-activity
Matched whitelist source: Microsoft_asn Maltiverse 2026-08-17 08:00:52 2026-08-17 08:00:52 benign
SQL Injection AbuseIPDB 2026-08-16 19:08:01 2026-08-17 07:47:06 attacker malicious-activity
HTTP Attacker AbuseIPDB 2026-08-16 05:21:24 2026-08-17 07:47:06 attacker malicious-activity
Malicious Host AbuseIPDB 2026-08-16 12:58:44 2026-08-17 07:44:19 attacker compromised malicious-activity
Hacking AbuseIPDB 2026-08-16 12:58:24 2026-08-17 07:44:19 attacker malicious-activity
Bruteforce AbuseIPDB 2026-08-16 12:55:03 2026-08-17 07:44:19 attacker malicious-activity
HTTP Scrapper AbuseIPDB 2026-08-16 12:58:44 2026-08-17 07:39:07 anomalous-activity attacker malicious-activity
Port Scanner AbuseIPDB 2026-08-16 13:17:40 2026-08-17 02:36:45 anomalous-activity attacker malicious-activity reconnaissance
DDoS Attacker AbuseIPDB 2026-08-16 13:44:05 2026-08-17 00:58:13 attacker malicious-activity
Mail Spammer AbuseIPDB 2026-08-16 13:44:05 2026-08-17 00:58:13 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-08-16 13:54:50 2026-08-16 23:45:03 attacker malicious-activity
Proxy AbuseIPDB 2026-08-16 23:38:49 2026-08-16 23:38:49 anonymization proxy
VPN AbuseIPDB 2026-08-16 23:38:49 2026-08-16 23:38:49 anonymization vpn

Tags

attacker spam bruteforce bot abuse apache ddos rfi login joomla wordpress

Whois information

AS name
AS8075 Microsoft Corporation
Registrant
Microsoft Corporation
City
Des Moines
State
IA
Postal code
50316
Country
US — United States 🇺🇸
First indexed
2026-08-17 08:00:50
Last updated
2026-09-05 16:03:06