20.70.170.217
Classification: Whitelisted
20.70.170.217 is a whitelisted (trusted) IP address. Reported by 4 threat sources, last seen 2026-09-10. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-01-24 11:01:23 | 2026-09-10 16:03:44 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:04:37 | 2026-09-04 16:04:37 | attacker malicious-activity | |
| Matched whitelist source: Microsoft_asn | Maltiverse | 2026-07-19 00:06:43 | 2026-07-19 00:06:43 | benign | |
| Malicious Host | AbuseIPDB | 2026-01-22 18:53:15 | 2026-03-13 02:04:26 | compromised malicious-activity | |
| HTTP bot | Blocklist.de | 2026-01-23 07:10:21 | 2026-02-03 04:08:35 | malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-01-24 07:37:57 | 2026-01-28 07:53:30 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-01-23 03:20:06 | 2026-01-28 06:53:20 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-01-22 18:45:14 | 2026-01-23 03:11:06 | malicious-activity | |
| Hacking | AbuseIPDB | 2026-01-22 18:54:21 | 2026-01-23 03:09:40 | malicious-activity | |
| SQL Injection | AbuseIPDB | 2026-01-22 19:54:52 | 2026-01-23 03:02:01 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2026-01-22 18:45:14 | 2026-01-23 03:02:01 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-01-22 18:50:51 | 2026-01-23 03:01:32 | anomalous-activity | |
| DDoS Attacker | AbuseIPDB | 2026-01-22 21:18:57 | 2026-01-23 02:45:03 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-01-22 20:01:09 | 2026-01-23 01:32:17 | anomalous-activity | |
| SSH Attacker | AbuseIPDB | 2026-01-22 19:12:51 | 2026-01-23 00:47:24 | malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-01-22 19:20:09 | 2026-01-22 19:20:09 | malicious-activity | |
| Proxy | AbuseIPDB | 2026-01-22 19:20:09 | 2026-01-22 19:20:09 | anonymization |
Tags
apache ddos rfi attacker spam bruteforce bot login joomla wordpress abuseWhois information
- AS name
- AS8075 Microsoft Corporation
- Registrant
- Microsoft Corporation
- City
- Sydney
- Postal code
- 2000
- Country
- AU — Australia 🇦🇺
- First indexed
- 2026-01-23 03:20:06
- Last updated
- 2026-09-10 16:03:44