31.59.20.17
Classification: Malicious
31.59.20.17 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-05. Network: AS205544 Private Customer.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-07-06 16:01:31 | 2026-09-05 16:06:03 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:07:37 | 2026-09-04 16:07:37 | attacker malicious-activity | |
| Malicious Host | HoneyDB | 2026-03-10 00:00:00 | 2026-05-12 00:00:00 | malicious-activity | |
| Proxy | FireHOL | 2025-02-02 08:20:08 | 2025-10-06 14:22:08 | anonymization | |
| Proxy | IPWhois.io | 2025-02-16 20:48:55 | 2025-06-15 10:28:17 | anonymization | |
| Suspicious Host | AbuseIPDB | 2025-01-14 22:05:43 | 2025-01-18 12:37:16 | anomalous-activity |
Tags
anonymization abuseWhois information
- AS name
- AS205544 Private Customer
- AS registry
- ripencc
- AS date
- 2011-01-28 00:00:00
- AS CIDR
- 31.59.20.0/24
- Registrant
- Private Customer
- City
- London
- Postal code
- SW1
- Country
- GB — United Kingdom 🇬🇧
- First indexed
- 2025-01-15 08:50:08
- Last updated
- 2026-09-05 16:06:03
Malicious IPs in the same CIDR
31.59.20.115 31.59.20.178 31.59.20.243 31.59.20.76 31.59.20.40 31.59.20.175 31.59.20.17 31.59.20.134 31.59.20.218 31.59.20.103