IP Intelligence Briefing: 185.220.101.45
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: 55 (Moderate Risk)
- Provider: Tor Exit Nodes (AS60729)
- Geolocation: Germany (Brandenburg an der Havel), Latitude 51.17, Longitude 10.45
- Ownership: FORPRIVACYNET-MNT (privacy-focused organization)
- Network Role: Tor exit node, no open services, firewalled
---
**2. Threat Indicators**
- No direct malicious indicators (no malware, phishing, or exploit activity).
- Tor exit node association: High-risk due to anonymity and potential misuse for illicit activities.
- Subnet Abuse Density: 35% (mixed risk; 50/142 neighbors flagged as threats).
- DNS: Resolves to `tor-exit-45.for-privacy.net` (privacy-focused domain).
---
**3. Observation History**
- Recent Signals:
- 2026-06-10: Basic reputation score (0.4), DNSSEC valid, CAA records present.
- 2026-06-09: Tor exit node confirmed, subnet abuse density 35%.
- No persistent threats or scans detected.
---
**4. Relationships**
- Linked Entities:
- Tor exit node network (`TOR-EXIT`).
- DNS hostname: `tor-exit-45.for-privacy.net` (domain: `for-privacy.net`).
- Email security: SPF and DMARC records present.
---
**5. Neighborhood Analysis**
- Subnet: `185.220.101.0/24`
- Neighbor Risk Distribution:
- 95 IPs: Low/medium risk (avg. 40โ70).
- 5 IPs: High risk (avg. 70).
- Abuse Density: 35% (moderate risk).
---
**6. Recommendations**
1. Monitor traffic: Track anomalies in the `185.220.101.0/24` subnet for increased threat activity.
2. Verify Tor exit usage: Confirm if this IP is part of a known malicious Tor exit node cluster.
3. Check DNS behavior: Monitor `tor-exit-45.for-privacy.net` for suspicious DNS queries or domain usage.
4. Subnet-level controls: Consider rate-limiting or blocking the subnet if it correlates with malicious activity.
Note: This IP is associated with privacy-focused infrastructure but requires vigilance due to its Tor exit node status and mixed subnet risk profile.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | FORPRIVACYNET-MNT |
| ASN | AS60729 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | tor-exit-45.for-privacy.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | tor-exit-45.for-privacy.net |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 21% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 20% | 2 | 3 |
| reputation | 18% | 1 | 2 |
| geolocation | 19% | 2 | 2 |
| Overall | 17% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-22 13:35:39 UTC |
| Last Seen | 2026-06-26 21:06:48 UTC |
| Profile Built | 2026-06-27 10:39:44 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 47 |
Full dossier details are available via our API.