IP address


.645104.168.85.25104-168-85-25-host.colocrossing.com
Shodan(more info)
Passive DNS
Tags: IP in hostname
IP blacklists
CI Army
104.168.85.25 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2026-09-27 02:50:00.795000
Was present on blacklist at: 2026-09-23 02:50, 2026-09-24 02:50, 2026-09-25 02:50, 2026-09-26 02:50, 2026-09-27 02:50
AbuseIPDB
104.168.85.25 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-09-27 04:00:00.649000
Was present on blacklist at: 2026-09-23 04:00, 2026-09-24 04:00, 2026-09-25 04:00, 2026-09-26 04:00, 2026-09-27 04:00

Threat categories

TLRoleCategoryDetails
70 src scan port: 3389
38 src —

Warden events (3335)
2026-09-27
ReconScanning (node.4dc198): 200
ReconScanning (node.368407): 200
ReconScanning (node.ce2b59): 21
2026-09-26
ReconScanning (node.4dc198): 289
ReconScanning (node.368407): 287
ReconScanning (node.ce2b59): 31
2026-09-25
ReconScanning (node.4dc198): 287
ReconScanning (node.368407): 287
ReconScanning (node.ce2b59): 31
2026-09-24
ReconScanning (node.4dc198): 288
ReconScanning (node.ce2b59): 31
ReconScanning (node.368407): 286
2026-09-23
ReconScanning (node.4dc198): 288
ReconScanning (node.368407): 287
ReconScanning (node.ce2b59): 43
2026-09-22
ReconScanning (node.ce2b59): 59
ReconScanning (node.4dc198): 210
ReconScanning (node.368407): 210
DShield reports (IP summary, reports)
2026-09-22
Number of reports: 1833
Distinct targets: 282
2026-09-23
Number of reports: 2657
Distinct targets: 280
2026-09-24
Number of reports: 2573
Distinct targets: 280
2026-09-25
Number of reports: 2573
Distinct targets: 280
2026-09-26
Number of reports: 2565
Distinct targets: 278
Origin AS
AS36352 - AS-COLOCROSSING
BGP Prefix
104.168.85.0/24
geo
Ireland, Dublin
🕑 Europe/Dublin
hostname
104-168-85-25-host.colocrossing.com
hostname_class
['ip_in_hostname']
Address block ('inetnum' or 'NetRange' in whois database)
104.168.0.0 - 104.168.127.255
last_activity
2026-09-27 16:41:09
last_warden_event
2026-09-27 16:41:09
rep
0.6454747495543564
reserved_range
0
ts_added
2026-09-22 06:20:06.878000
ts_last_update
2026-09-27 16:41:14.510000

Warden event timeline

DShield event timeline

Presence on blacklists