31.59.20.17

Classification: Malicious

31.59.20.17 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-05. Network: AS205544 Private Customer.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-07-06 16:01:31 2026-09-05 16:06:03 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:07:37 2026-09-04 16:07:37 attacker malicious-activity
Malicious Host HoneyDB 2026-03-10 00:00:00 2026-05-12 00:00:00 malicious-activity
Proxy FireHOL 2025-02-02 08:20:08 2025-10-06 14:22:08 anonymization
Proxy IPWhois.io 2025-02-16 20:48:55 2025-06-15 10:28:17 anonymization
Suspicious Host AbuseIPDB 2025-01-14 22:05:43 2025-01-18 12:37:16 anomalous-activity

Tags

anonymization abuse

Whois information

AS name
AS205544 Private Customer
AS registry
ripencc
AS date
2011-01-28 00:00:00
AS CIDR
31.59.20.0/24
Registrant
Private Customer
City
London
Postal code
SW1
Country
GB — United Kingdom 🇬🇧
First indexed
2025-01-15 08:50:08
Last updated
2026-09-05 16:06:03

Malicious IPs in the same CIDR

31.59.20.115 31.59.20.178 31.59.20.243 31.59.20.76 31.59.20.40 31.59.20.175 31.59.20.17 31.59.20.134 31.59.20.218 31.59.20.103