31.59.20.40

Classification: Malicious

31.59.20.40 is a malicious IP address. Reported by 3 threat sources, last seen 2026-08-28. Network: AS205544 Private Customer.

Current activity

  • Open proxy — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
HTTP Spammer StopForumSpam.com 2025-02-19 21:44:41 2026-08-28 07:06:14 malicious-activity
Proxy FireHOL 2026-06-17 21:56:13 2026-08-27 18:19:17 anomalous-activity anonymization proxy
Anonymizer FireHOL 2026-06-17 20:54:47 2026-08-27 17:23:14 anomalous-activity anonymization
Proxy IPWhois.io 2025-06-11 09:20:45 2026-05-25 00:17:37 anonymization
VPN IPWhois.io 2025-03-24 11:40:27 2025-03-24 11:40:27 anonymization

Tags

bot abuse anonymization

Whois information

AS name
AS205544 Private Customer
AS registry
ripencc
AS date
2011-01-28 00:00:00
AS CIDR
31.59.20.0/24
Registrant
Private Customer
City
London
Postal code
SW1
Country
GB — United Kingdom 🇬🇧
First indexed
2025-02-19 21:44:41
Last updated
2026-08-28 07:06:14

Malicious IPs in the same CIDR

31.59.20.76 31.59.20.175 31.59.20.243 31.59.20.17 31.59.20.134 31.59.20.115 31.59.20.218 31.59.20.103 31.59.20.178 31.59.20.40