201.3.225.20

Classification: Malicious

201.3.225.20 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-05. Network: AS29491 Gigagroup Sp. Z O.O..

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • TOR node — Part of the TOR anonymization network.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-08-18 16:08:19 2026-09-05 17:20:37 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 17:24:38 2026-09-04 17:24:38 attacker malicious-activity
HTTP Spammer StopForumSpam.com 2026-08-05 09:06:07 2026-09-03 07:43:45 malicious-activity
ET TOR Known Tor Relay/Router (Not Exit) Node TCP Traffic Emerging Threats 2026-07-28 13:02:12 2026-08-12 11:02:10 anomalous-activity anonymization tor
ET TOR Known Tor Exit Node TCP Traffic Emerging Threats 2026-07-28 13:01:26 2026-08-12 11:01:24 anomalous-activity anonymization tor
TOR Exit Node TorProject.org 2026-07-26 12:03:03 2026-08-06 10:03:05 anomalous-activity anonymization tor
Malicious Host HoneyDB 2026-08-06 00:00:00 2026-08-06 00:00:00 attacker malicious-activity
SSH Attacker Blocklist.net.ua 2026-08-04 16:18:45 2026-08-04 16:18:45 attacker malicious-activity

Tags

tor anonymization abuse bot

Whois information

AS name
AS29491 Gigagroup Sp. Z O.O.
Registrant
Gigagroup Sp. Z O.O.
City
Warsaw
Postal code
00-693
Country
PL — Poland 🇵🇱
First indexed
2026-07-26 12:03:03
Last updated
2026-09-05 17:20:37