20.52.125.110
Classification: Whitelisted
20.52.125.110 is a whitelisted (trusted) IP address. Reported by 4 threat sources, last seen 2026-09-12. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-07-30 16:00:13 | 2026-09-12 16:02:37 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:04:32 | 2026-09-11 16:02:36 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-07-31 09:00:19 | 2026-08-08 09:00:58 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-07-31 07:00:21 | 2026-08-08 07:01:02 | attacker malicious-activity | |
| Matched whitelist source: Microsoft_asn | Maltiverse | 2026-07-30 16:00:15 | 2026-07-30 16:00:15 | benign | |
| Port Scanner | AbuseIPDB | 2026-07-30 09:35:24 | 2026-07-30 16:00:08 | anomalous-activity attacker malicious-activity reconnaissance | |
| Bruteforce | AbuseIPDB | 2026-07-30 09:35:16 | 2026-07-30 16:00:08 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-07-30 09:34:55 | 2026-07-30 16:00:08 | attacker malicious-activity | |
| Hacking | AbuseIPDB | 2026-07-30 09:45:17 | 2026-07-30 15:52:17 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-07-30 09:41:31 | 2026-07-30 15:50:37 | anomalous-activity attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-07-30 09:38:27 | 2026-07-30 15:05:54 | attacker compromised malicious-activity | |
| Known Attacker | AbuseIPDB | 2026-07-30 14:15:05 | 2026-07-30 14:15:05 | attacker malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-07-30 14:15:05 | 2026-07-30 14:15:05 | attacker malicious-activity | |
| Phishing | AbuseIPDB | 2026-07-30 14:15:05 | 2026-07-30 14:15:05 | malicious-activity phishing | |
| SQL Injection | AbuseIPDB | 2026-07-30 09:47:48 | 2026-07-30 14:15:05 | attacker malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-07-30 09:41:31 | 2026-07-30 14:15:05 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-07-30 09:35:18 | 2026-07-30 14:15:05 | attacker malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-07-30 09:41:31 | 2026-07-30 13:39:57 | attacker malicious-activity |
Tags
abuse apache ddos rfi attacker login bruteforce bot joomla wordpressWhois information
- AS name
- AS8075 Microsoft Corporation
- Registrant
- Microsoft Corporation
- City
- Frankfurt am Main
- Postal code
- 60311
- Country
- DE — Germany 🇩🇪
- First indexed
- 2026-07-30 16:00:13
- Last updated
- 2026-09-12 16:02:37