🖥 5.255.123.164 — The Infrastructure Group B.V.
The Infrastructure Group B.V. · AS60404 · NL · 5.255.123.0/24 · IP Blocklists · threat 0.50 · 37x · 17 sources
reputation 41.1 (ELEVATED)
· first seen 1d ago · last seen 22h ago
No special flags ip medium-severity auto-tagged
Reputation
41.1
ELEVATED
Threat Score
0.50
37 sightings
ASN
AS60404
from indicator
Peers on ASN
0
malicious co-tenants
Bad neighborhood
3
5.255.123.0/24
Country
NL
from indicator
🕵 Team Cymru Scout
Team Cymru Scout not configured — add config.scout.php or set cymruscout in API Config.
🌐 Network & Geo (local-first)
| IP | 5.255.123.164 |
| Organization | The Infrastructure Group B.V. |
| ASN | AS60404 |
| Netname | — |
| Netblock | — |
| Reverse DNS (PTR) | — |
| Country | NL country intel |
Identity resolves from the indicator's own columns first, then on demand from the local ip_ranges dataset by integer range — complete even before the bulk resolver runs.
🔥 Threat severity (AS60404 neighborhood)
1
Avg threat 0.5 · peak 0.5 across 1 local IPs on AS60404
📁 Categories (ASN neighborhood)
1
🦠 Malware families (ASN neighborhood)
No local data.
🏷 Tags (ASN neighborhood)
1
1
1
🔌 Sources (ASN neighborhood)
1
1
1
1
1
1
1
1
1
1
1
1
1
1
🌎 Geographic spread
1
📅 First-seen timeline
1
Reporting Sources for this IP (17)
FireHOL: firehol_abusers_30d.netset | IP Blocklists |
FireHOL: stopforumspam.ipset | IP Blocklists |
FireHOL: stopforumspam_7d.ipset | IP Blocklists |
FireHOL: stopforumspam_30d.ipset | IP Blocklists |
FireHOL: stopforumspam_90d.ipset | IP Blocklists |
FireHOL: stopforumspam_180d.ipset | IP Blocklists |
FireHOL: stopforumspam_365d.ipset | IP Blocklists |
FireHOL: tor_exits.ipset | IP Blocklists |
FireHOL: tor_exits_1d.ipset | IP Blocklists |
FireHOL: tor_exits_7d.ipset | IP Blocklists |
FireHOL: tor_exits_30d.ipset | IP Blocklists |
FireHOL: dm_tor.ipset | IP Blocklists |
FireHOL: et_tor.ipset | IP Blocklists |
Tor Exit Nodes (dan.me.uk) | Tor |
Tor Bulk Exit List | Tor |
FireHOL abusers 30d | IP Reputation |
dan.me.uk Tor node list | Dark Web |
Passive DNS — domains resolving here (0)
No passive DNS yet. Run DNS audit.
🏠 Same /24 — 5.255.123.0/24 (3 other malicious IPs)
Other flagged IPs in the same /24 — a concentration here suggests a compromised or abused block.
| IP | Category | Family | Threat | |
|---|---|---|---|---|
5.255.123.43 |
IP Blocklists | - | dossier | |
5.255.123.158 |
IP Blocklists | - | dossier | |
5.255.123.162 |
IP Blocklists | - | dossier |
🔍 OSINT pivots — external lookups
🔗 Internal pivots & actions
Identity resolves local-first: the indicator's own asn/country columns, else on-demand integer-range lookup against the local
ip_ranges dataset — so ASN, org and country populate even before the bulk resolver finishes and even for IPs not yet ingested. Analytics, neighborhood and graph render entirely from the local database; live reputation providers augment only when keys and outbound access are available.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Enrich now to pull reputation/ports
- Check the /24 for a bad neighborhood
- Draft a takedown if abusive
⚙ Automation
Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php