IP address 31.56.209.231 has been flagged in 338 abuse reports across 9 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is abuseipdb blacklist, along with botnet c2, malicious, malware c2, malware infrastructure, professional threat, rdp bruteforce, reconnaissance, reputation low, suspicious activity, web attack.
This IP is geolocated in United Arab Emirates and belongs to the network Swissnet LLC (AS209373). Reports span from 2026-05-16 to 2026-07-27.
Assessment: With 338 abuse reports, 31.56.209.231 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. This IP has been identified as a command-and-control server for botnet infrastructure, meaning it coordinates malicious activity across networks of compromised machines.