4.224.52.97
Classification: Whitelisted
4.224.52.97 is a whitelisted (trusted) IP address. Reported by 4 threat sources, last seen 2026-09-05. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Known scanner — Seen scanning hosts over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-07-08 16:00:15 | 2026-09-05 16:01:13 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:02:35 | 2026-09-04 16:02:35 | attacker malicious-activity | |
| HTTP bot | Blocklist.de | 2026-07-17 08:02:07 | 2026-07-17 08:02:07 | attacker malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-07-09 09:00:39 | 2026-07-10 09:00:37 | attacker malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-07-09 07:00:42 | 2026-07-10 07:00:37 | attacker malicious-activity | |
| Matched whitelist source: Microsoft_asn | Maltiverse | 2026-07-08 16:02:35 | 2026-07-08 16:02:35 | benign | |
| Bruteforce | AbuseIPDB | 2026-07-08 10:50:04 | 2026-07-08 16:00:54 | attacker malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-07-08 10:50:04 | 2026-07-08 16:00:54 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-07-08 12:03:23 | 2026-07-08 15:39:00 | attacker compromised malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-07-08 11:27:13 | 2026-07-08 15:39:00 | attacker malicious-activity | |
| Hacking | AbuseIPDB | 2026-07-08 10:50:05 | 2026-07-08 15:39:00 | attacker malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-07-08 10:52:26 | 2026-07-08 15:27:53 | anomalous-activity attacker malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-07-08 11:39:18 | 2026-07-08 15:11:13 | anomalous-activity attacker malicious-activity reconnaissance | |
| Mail Spammer | AbuseIPDB | 2026-07-08 12:24:44 | 2026-07-08 13:58:32 | attacker malicious-activity | |
| SSH Attacker | AbuseIPDB | 2026-07-08 12:18:22 | 2026-07-08 13:38:31 | attacker malicious-activity | |
| SQL Injection | AbuseIPDB | 2026-07-08 10:50:05 | 2026-07-08 13:04:11 | attacker malicious-activity | |
| Known Attacker | AbuseIPDB | 2026-07-08 12:24:44 | 2026-07-08 12:24:44 | attacker malicious-activity | |
| FTP Attacker | AbuseIPDB | 2026-07-08 12:24:44 | 2026-07-08 12:24:44 | attacker malicious-activity | |
| Phishing | AbuseIPDB | 2026-07-08 12:24:44 | 2026-07-08 12:24:44 | malicious-activity phishing |
Tags
abuse apache ddos rfi attacker login bruteforce bot joomla wordpress spamWhois information
- AS name
- AS8075 Microsoft Corporation
- Registrant
- Microsoft Corporation
- City
- Pune
- Postal code
- 411002
- Country
- IN — India 🇮🇳
- First indexed
- 2026-07-08 16:00:15
- Last updated
- 2026-09-05 16:01:13