67.20.116.98
Classification: Malicious
67.20.116.98 is a malicious IP address. Reported by 5 threat sources, last seen 2026-08-28. Network: AS46606 Unified Layer.
Current activity
- Known attacker — Seen launching attacks over the Internet.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| DDoS Attacker | Blocklist.net.ua | 2024-12-13 07:16:54 | 2026-08-28 16:17:46 | attacker malicious-activity | |
| Malicious Host | AbuseIPDB | 2025-03-17 03:37:02 | 2026-06-04 22:15:04 | compromised malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-10-31 20:54:53 | 2026-06-03 22:33:35 | anomalous-activity | |
| Proxy | IPWhois.io | 2025-02-08 14:53:00 | 2026-01-05 00:26:07 | anonymization | |
| Proxy | FireHOL | 2024-11-03 12:25:31 | 2025-10-07 10:23:26 | anonymization | |
| HTTP Attacker | AbuseIPDB | 2025-03-05 00:22:09 | 2025-05-10 10:38:43 | malicious-activity | |
| SQL Injection | AbuseIPDB | 2025-04-20 23:26:53 | 2025-05-09 19:05:02 | malicious-activity | |
| Hacking | AbuseIPDB | 2025-03-07 11:32:05 | 2025-05-09 19:05:02 | malicious-activity | |
| Bruteforce | AbuseIPDB | 2025-03-07 11:32:05 | 2025-05-08 23:01:07 | malicious-activity | |
| HTTP Scrapper | AbuseIPDB | 2025-03-07 23:42:52 | 2025-05-07 00:41:16 | anomalous-activity | |
| Port Scanner | AbuseIPDB | 2025-04-20 23:26:53 | 2025-04-21 12:58:12 | anomalous-activity | |
| Proxy | AbuseIPDB | 2025-04-20 23:26:53 | 2025-04-20 23:26:53 | anonymization | |
| VPN | AbuseIPDB | 2025-04-20 23:26:53 | 2025-04-20 23:26:53 | anonymization | |
| DDoS attack | AbuseIPDB | 2025-03-10 19:02:53 | 2025-04-05 03:00:57 | malicious-activity | |
| SSH Attacker | AbuseIPDB | 2025-03-14 02:45:36 | 2025-03-14 02:45:36 | malicious-activity | |
| Bruteforce login attacker | Blocklist.de | 2024-10-30 10:31:16 | 2024-10-31 10:06:36 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2024-10-30 09:51:28 | 2024-10-31 09:24:01 | malicious-activity | |
| Parasite traffic on site knjizara-srpska.com. | Blocklist.net.ua | 2023-01-04 03:39:50 | 2023-01-04 03:39:50 | malicious-activity |
Tags
abuse apache ddos rfi attacker login bruteforce bot joomla wordpress anonymizationWhois information
- AS name
- AS46606 Unified Layer
- AS registry
- arin
- AS date
- 2009-01-14 00:00:00
- AS CIDR
- 67.20.64.0/18
- CIDR
- 67.20.64.0/18
- Registrant
- Unified Layer
- Address
- 1958 South 950 East
- City
- Phoenix
- State
- AZ
- Postal code
- 85004-1905
- Country
- US — United States 🇺🇸
- Contact email
- [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2023-01-04 03:39:50
- Last updated
- 2026-08-28 16:17:46