52.231.68.47
Classification: Malicious
52.231.68.47 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-05. Network: AS8075 Microsoft Corporation.
Current activity
- Known attacker — Seen launching attacks over the Internet.
- Open proxy — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2026-01-22 13:37:55 | 2026-09-05 16:22:23 | attacker malicious-activity | |
| Empty reason | Blocklist.net.ua | 2026-09-04 16:24:24 | 2026-09-04 16:24:24 | attacker malicious-activity | |
| HTTP bot | Blocklist.de | 2026-02-03 04:14:32 | 2026-07-17 08:02:23 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2026-01-21 18:20:23 | 2026-03-01 20:09:05 | compromised malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2026-01-23 08:49:05 | 2026-01-24 07:40:37 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2026-01-22 03:25:45 | 2026-01-24 02:13:56 | malicious-activity | |
| HTTP Attacker | AbuseIPDB | 2026-01-21 17:34:05 | 2026-01-22 03:23:17 | malicious-activity | |
| Proxy | AbuseIPDB | 2026-01-22 03:12:48 | 2026-01-22 03:12:48 | anonymization | |
| Hacking | AbuseIPDB | 2026-01-21 17:43:53 | 2026-01-22 03:12:48 | malicious-activity | |
| SQL Injection | AbuseIPDB | 2026-01-21 19:18:04 | 2026-01-22 03:00:08 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2026-01-21 17:38:02 | 2026-01-22 03:00:06 | anomalous-activity | |
| Bruteforce | AbuseIPDB | 2026-01-21 17:34:22 | 2026-01-22 02:58:55 | malicious-activity | |
| Port Scanner | AbuseIPDB | 2026-01-21 18:24:51 | 2026-01-22 02:57:35 | anomalous-activity | |
| SSH Attacker | AbuseIPDB | 2026-01-21 17:47:18 | 2026-01-22 00:54:10 | malicious-activity | |
| DDoS Attacker | AbuseIPDB | 2026-01-21 18:23:57 | 2026-01-21 21:26:50 | malicious-activity | |
| Mail Spammer | AbuseIPDB | 2026-01-21 20:00:32 | 2026-01-21 20:00:32 | malicious-activity | |
| Phishing | AbuseIPDB | 2026-01-21 18:20:22 | 2026-01-21 19:26:17 | malicious-activity |
Tags
apache ddos rfi attacker abuse login bruteforce bot joomla wordpress spamWhois information
- AS name
- AS8075 Microsoft Corporation
- Registrant
- Microsoft Corporation
- City
- Seoul
- Postal code
- 04523
- Country
- KR — Korea, Republic of 🇰🇷
- First indexed
- 2026-01-22 03:25:45
- Last updated
- 2026-09-05 16:22:23