31.59.20.178
Classification: Malicious
31.59.20.178 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-05. Network: AS205544 Private Customer.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-07-06 16:01:31 | 2026-09-05 16:06:03 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:07:38 | 2026-09-04 16:07:38 | attacker malicious-activity | |
| Proxy | FireHOL | 2025-01-01 20:21:23 | 2026-07-14 19:44:32 | anomalous-activity anonymization proxy | |
| Anonymizer | FireHOL | 2026-06-10 20:13:49 | 2026-07-14 18:46:58 | anomalous-activity anonymization | |
| Malicious Host | HoneyDB | 2025-11-22 00:00:00 | 2026-01-18 00:00:00 | malicious-activity | |
| Proxy | IPWhois.io | 2025-01-01 20:21:25 | 2025-06-15 10:28:29 | anonymization |
Tags
anonymization abuseWhois information
- AS name
- AS205544 Private Customer
- AS registry
- ripencc
- AS date
- 2011-01-28 00:00:00
- AS CIDR
- 31.59.20.0/24
- Registrant
- Private Customer
- City
- London
- Postal code
- SW1
- Country
- GB — United Kingdom 🇬🇧
- First indexed
- 2025-01-01 20:21:23
- Last updated
- 2026-09-05 16:06:03
Malicious IPs in the same CIDR
31.59.20.243 31.59.20.76 31.59.20.40 31.59.20.175 31.59.20.17 31.59.20.134 31.59.20.115 31.59.20.218 31.59.20.103 31.59.20.178