52.175.192.173
Classification: Malicious
52.175.192.173 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-28. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-04-15 12:19:04 | 2026-08-28 16:16:12 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-09-26 20:55:23 | 2026-04-15 06:48:57 | anomalous-activity | |
| Bruteforce | Blocklist.net.ua | 2024-11-05 14:32:21 | 2025-11-04 11:37:36 | malicious-activity | |
| Proxy | FireHOL | 2024-11-03 08:43:21 | 2025-10-07 07:30:41 | anonymization | |
| Malicious Host | AbuseIPDB | 2024-09-26 02:00:14 | 2025-09-24 03:14:18 | compromised malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2025-09-17 08:11:49 | 2025-09-17 08:11:49 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2025-09-17 07:27:40 | 2025-09-17 07:27:40 | malicious-activity | |
| Proxy | IPWhois.io | 2025-02-17 00:41:43 | 2025-08-12 23:04:27 | anonymization | |
| Hacking | AbuseIPDB | 2024-09-24 07:59:53 | 2025-08-11 16:14:53 | malicious-activity | |
| DDoS attack | AbuseIPDB | 2024-10-06 12:28:50 | 2025-08-11 09:25:18 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2024-09-24 07:59:53 | 2025-08-11 09:25:18 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2024-09-26 13:33:06 | 2025-08-11 09:25:18 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2025-06-12 04:58:29 | 2025-08-02 09:02:17 | anomalous-activity | |
| Mail Spammer | AbuseIPDB | 2024-10-03 13:04:15 | 2025-07-29 13:26:40 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2024-09-25 22:31:29 | 2025-07-29 13:26:40 | malicious-activity | |
| IMAP Attacker | Blocklist.de | 2024-09-28 09:43:35 | 2025-02-06 10:52:25 | malicious-activity | |
| Mail Spammer | Blocklist.de | 2024-09-28 10:24:02 | 2025-02-05 11:44:10 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2024-09-24 07:59:53 | 2025-02-04 12:35:44 | anomalous-activity | |
| SQL Injection | AbuseIPDB | 2024-12-30 19:22:04 | 2024-12-30 19:22:04 | malicious-activity | |
| IMAP Attacker | AbuseIPDB | 2024-09-28 03:33:42 | 2024-12-21 09:18:01 | malicious-activity |
Tags
attacker imap pop3 sasl bot mail spam anonymization abuse apache ddos rfi login bruteforce joomla wordpressWhois information
- AS name
- AS8075 Microsoft Corporation
- AS registry
- arin
- AS date
- 2015-11-24 00:00:00
- AS CIDR
- 52.160.0.0/11
- CIDR
- 52.152.0.0/13, 52.145.0.0/16, 52.148.0.0/14, 52.160.0.0/11, 52.146.0.0/15
- Registrant
- Microsoft Corporation
- Address
- One Microsoft Way
- City
- Quincy
- State
- WA
- Postal code
- 98848
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2024-09-27 05:22:51
- Last updated
- 2026-08-28 16:16:12
Malicious IPs in the same CIDR
52.175.192.173 52.163.56.148 52.165.80.86 52.167.144.57 52.187.181.80