Is 191.101.157.25 malicious?

IP reputation report for 191.101.157.25: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.

191.101.157.25 is listed on 48 threat intelligence sources

Detected by 48 threat intelligence sources in the isMalicious dataset — review before trusting this IP.

Threat verdict

VerdictListed on blocklists

Appears on threat intelligence blocklists — treat with caution.

Blocklist detections48 sources
Categoriesabuse, attack, phishing, suspicious, malware, malicious, botnet, attacks
Confidence score100/100

Aggregated confidence across the sources reporting this indicator.

First seen2026-05-25
Last updated2026-05-25

Network & location

LocationBerlin, State of Berlin, Germany
ISPCogent Communications
ASNAS174 — Cogent Communications, LLC
Network191.101.157.0/24
CompanyInternet Utilities Europe and Asia Limited
InfrastructureDatacenter, VPN, Proxy

Detections

  • FireHOL - Firehol Abusers 30dabuse
  • FireHOL - Firehol Level2attack
  • FireHOL - Greensnowattack
  • FireHOL - Stopforumspamabuse
  • FireHOL - Stopforumspam 180dabuse
  • FireHOL - Stopforumspam 90dabuse
  • FireHOL - Stopforumspam 365dabuse
  • Romain Marcoux - Malicious IPsphishing
  • Greensnow - Attacks Multi-protocolsphishing
  • IPsum Level 2suspicious
  • IPsum – malicious IP feedmalware
  • ThreatHive - Hive Blocklist
  • Sefinek - Malicious IP Addressesmalware
  • Borestad - AbuseIPDB Blocklist (1d)abuse
  • T145 - Black Mirror IPv4 Blocklistmalware
  • Bitwire - Inbound Blocklistmalware
  • IPsum Level 1suspicious
  • Blocklist - All Attacks (48h)attack
  • Blocklist - All Apache attacks (48h)attack
  • Ultimate Hosts Blacklist - Blocklist.demalware
  • Opendbl Net - Blocklistde All.listmalware
  • Romain Marcoux - Malicious Outgoing IPsphishing
  • Threatview IP Blocklistmalicious
  • Malware-Filter - Botnet Filterbotnet

+24 more sources in the full report.

Threat categories

Related malicious IPs on nearby networks