Is 103.20.223.25 malicious?

IP reputation report for 103.20.223.25: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.

103.20.223.25 is listed on 9 threat intelligence sources

Detected by 9 threat intelligence sources in the isMalicious dataset — review before trusting this IP.

Threat verdict

VerdictListed on blocklists

Appears on threat intelligence blocklists — treat with caution.

Blocklist detections9 sources
Categoriesabuse, proxy, spam, malware, c2, phishing
Confidence score100/100

Aggregated confidence across the sources reporting this indicator.

First seen2026-05-18
Last updated2026-05-18

Detections

  • FireHOL - Firehol Abusers 30dabuse
  • FireHOL - Firehol Anonymousproxy
  • FireHOL - Firehol Proxiesproxy
  • FireHOL - Php Spammers 30dspam
  • FireHOL - Socks Proxy 30dproxy
  • T145 - Black Mirror IPv4 Blocklistmalware
  • Bitwire - Inbound Blocklistmalware
  • bitwire‑it IP blocklist – bad IPs updated every 2hmalware
  • Free OSINT Pack - CriticalPathSecurity Collected IOCsmalware

Threat categories

Related malicious IPs on nearby networks