Is 103.20.223.25 malicious?
IP reputation report for 103.20.223.25: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.
103.20.223.25 is listed on 9 threat intelligence sources
Detected by 9 threat intelligence sources in the isMalicious dataset — review before trusting this IP.
Threat verdict
VerdictListed on blocklists
Appears on threat intelligence blocklists — treat with caution.
Blocklist detections9 sources
Categoriesabuse, proxy, spam, malware, c2, phishing
Confidence score100/100
Aggregated confidence across the sources reporting this indicator.
First seen2026-05-18
Last updated2026-05-18
Detections
- FireHOL - Firehol Abusers 30dabuse
- FireHOL - Firehol Anonymousproxy
- FireHOL - Firehol Proxiesproxy
- FireHOL - Php Spammers 30dspam
- FireHOL - Socks Proxy 30dproxy
- T145 - Black Mirror IPv4 Blocklistmalware
- Bitwire - Inbound Blocklistmalware
- bitwire‑it IP blocklist – bad IPs updated every 2hmalware
- Free OSINT Pack - CriticalPathSecurity Collected IOCsmalware