31.59.20.40
Classification: Malicious
31.59.20.40 is a malicious IP address. Reported by 3 threat sources, last seen 2026-08-28. Network: AS205544 Private Customer.
Current activity
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| HTTP Spammer | StopForumSpam.com | 2025-02-19 21:44:41 | 2026-08-28 07:06:14 | malicious-activity | |
| Proxy | FireHOL | 2026-06-17 21:56:13 | 2026-08-27 18:19:17 | anomalous-activity anonymization proxy | |
| Anonymizer | FireHOL | 2026-06-17 20:54:47 | 2026-08-27 17:23:14 | anomalous-activity anonymization | |
| Proxy | IPWhois.io | 2025-06-11 09:20:45 | 2026-05-25 00:17:37 | anonymization | |
| VPN | IPWhois.io | 2025-03-24 11:40:27 | 2025-03-24 11:40:27 | anonymization |
Tags
bot abuse anonymizationWhois information
- AS name
- AS205544 Private Customer
- AS registry
- ripencc
- AS date
- 2011-01-28 00:00:00
- AS CIDR
- 31.59.20.0/24
- Registrant
- Private Customer
- City
- London
- Postal code
- SW1
- Country
- GB — United Kingdom 🇬🇧
- First indexed
- 2025-02-19 21:44:41
- Last updated
- 2026-08-28 07:06:14
Malicious IPs in the same CIDR
31.59.20.76 31.59.20.175 31.59.20.243 31.59.20.17 31.59.20.134 31.59.20.115 31.59.20.218 31.59.20.103 31.59.20.178 31.59.20.40