20.83.148.22

Classification: Whitelisted

20.83.148.22 is a whitelisted (trusted) IP address. Reported by 5 threat sources, last seen 2026-07-17. Network: AS8075 Microsoft Corporation.

MITRE ATT&CK associations

Malware families: COBALT STRIKE (S0154)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Matched whitelist source: Microsoft_asn Maltiverse 2026-07-17 18:40:06 2026-07-17 18:40:06 benign
Cobalt Strike ThreatFox Abuse.ch 2023-08-09 11:17:08 2025-03-23 05:25:25 malicious-activity S0154 Cobalt Strike
Malware Download URLhaus Abuse.ch 2024-11-26 12:18:58 2025-03-21 20:06:23 malicious-activity
Meterpreter ThreatFox Abuse.ch 2023-10-02 09:20:21 2023-10-04 08:22:08 malicious-activity
Malicious URL Hybrid-Analysis 2023-09-16 22:45:04 2023-09-16 22:45:04
Mail Spammer Abuseat.org 2023-08-09 11:17:08 2023-08-09 11:17:08

Tags

c2 historicalandnew meterpreter port:4445 port:4444 cobaltstrike cs-watermark-1740361778 microsoft-corp-msn-as-block agentemis beacon cobeacon censys port:5000 none port:80 cobalt strike shodan port:50050

Whois information

AS name
AS8075 Microsoft Corporation
AS registry
arin
AS date
2017-10-18 00:00:00
AS CIDR
20.64.0.0/10
CIDR
20.40.0.0/13, 20.128.0.0/16, 20.34.0.0/15, 20.36.0.0/14, 20.48.0.0/12, 20.33.0.0/16, 20.64.0.0/10
Registrant
Microsoft Corporation
Address
One Microsoft Way
City
Washington
State
VA
Postal code
22747
Country
US — United States 🇺🇸
Contact email
[email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
First indexed
2023-08-09 11:17:08
Last updated
2026-07-17 18:40:06

Malicious IPs in the same CIDR

20.115.90.12