IOC Details

IP

Indicator

85.217.149.19

Tag

honeypot

Source

4

First seen

2026-03-04 05:27:00

Last seen

2026-05-21 10:21:54

Hits

167

Comment history

  • 2026-05-21

    Observed 3 times. Targeted ports: 8. Country: Bulgaria.

  • 2026-05-20

    Observed 10 times. Targeted ports: 317, 610, 23134, 47808. Country: Canada. Reputation: known attacker.

  • 2026-05-19

    Observed 7 times. Targeted ports: 339, 441, 47808. Country: Canada. Reputation: known attacker.

  • 2026-05-18

    Observed 6 times. Targeted ports: 274, 963. Country: Canada.

  • 2026-05-17

    Observed 6 times. Targeted ports: 350, 608. Country: Canada.

  • 2026-05-16

    Observed 3 times. Targeted ports: 391. Country: Canada. Reputation: known attacker.

  • 2026-05-15

    Observed 3 times. Targeted ports: 841. Country: Bulgaria. Reputation: known attacker.

  • 2026-05-14

    Observed 6 times. Targeted ports: 868, 957. Country: Canada. Reputation: known attacker.

  • 2026-05-13

    Observed 3 times. Targeted ports: 459. Country: Canada.

  • 2026-05-12

    Observed 107 times. Targeted ports: 1222, 1226, 1232, 1239, 1256, 1273, 1284, 1288, 1289, 1299, 1310, 1311, 1326, 1329. Country: Canada. Alert categories: Generic Protocol Command Decode. Signatures: SURICATA STREAM spurious retransmission.

  • 2026-05-11

    Observed 3 times. Targeted ports: 298. Country: Canada. Reputation: known attacker.

  • 2026-05-10

    Observed 3 times. Targeted ports: 283. Country: Canada.

  • 2026-05-09

    Observed 3 times. Targeted ports: 787. Country: Canada. Reputation: known attacker.

  • 2026-05-08

    Observed 47 times. Targeted ports: 4594, 8375, 8919, 10776, 15941, 29862, 35709, 41550, 55504. Country: Canada. Reputation: known attacker.

  • 2026-05-07

    Observed 6 times. Targeted ports: 465, 643. Country: Canada. Reputation: known attacker.

  • 2026-05-06

    Observed 3 times. Targeted ports: 533. Country: Canada. Reputation: known attacker.

  • 2026-05-05

    Observed 3 times. Targeted ports: 20. Country: Canada. Reputation: known attacker.

  • 2026-05-04

    Observed 3 times. Targeted ports: 725. Country: Canada. Reputation: known attacker.

  • 2026-05-03

    Observed 3 times. Targeted ports: 412. Country: Canada.

  • 2026-05-02

    Observed 11 times. Targeted ports: 894, 915, 12912. Country: Canada. Reputation: known attacker. Alert categories: Misc Attack. Signatures: ET CINS Active Threat Intelligence Poor Reputation IP group 126.

  • 2026-05-01

    Observed 10 times. Targeted ports: 412, 622, 13110. Country: Canada. Reputation: known attacker. Alert categories: Misc Attack. Signatures: ET CINS Active Threat Intelligence Poor Reputation IP group 128.

  • 2026-04-30

    Observed 3 times. Targeted ports: 553. Country: Canada. Reputation: known attacker.

  • 2026-04-29

    Observed 15 times. Targeted ports: 12140, 12154, 13302. Country: Canada. Reputation: known attacker. Alert categories: Misc Attack. Signatures: ET CINS Active Threat Intelligence Poor Reputation IP group 120.

  • 2026-04-28

    Observed 5 times. Targeted ports: 9125. Country: Canada. Reputation: known attacker.

  • 2026-04-27

    Observed 1 times. Targeted ports: 786. Country: Canada. Reputation: known attacker.

  • 2026-04-26

    Observed 7 times. Targeted ports: 50226. Country: Canada. Reputation: known attacker.

  • 2026-04-23

    Observed 6 times. Targeted ports: 384, 923. Country: Canada. Reputation: known attacker.

  • 2026-04-22

    Observed 3 times. Targeted ports: 602. Country: Canada. Reputation: known attacker.

  • 2026-04-21

    Observed 21 times. Targeted ports: 1433. Country: Canada. Reputation: known attacker.

  • 2026-04-10

    Observed 15 times. Targeted ports: 256, 324, 541, 11596. Country: Canada. Reputation: known attacker.

  • 2026-03-27

    Observed 33 times. Targeted ports: 60637, 60642, 60662, 60678. Country: Canada.

  • 2026-03-26

    Observed 7 times. Targeted ports: 13443. Country: Canada. Reputation: known attacker.

  • 2026-03-24

    Observed 30 times. Targeted ports: 1187, 1582, 2672, 2689. Country: Canada. Reputation: known attacker.

  • 2026-03-23

    Observed 29 times. Targeted ports: 5412, 5734, 5735, 5746. Country: Canada. Reputation: known attacker.

  • 2026-03-21

    Observed 15 times. Targeted ports: 7286, 8295. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-19

    Observed 45 times. Targeted ports: 1043, 7114, 19144, 24729, 24760, 29725. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-18

    Observed 155 times. Targeted ports: 2938, 2939, 2940, 3000, 3033, 3119, 3151, 3227, 3272, 3274, 3382, 3383, 3425, 3457, 3508, 3510, 3570, 3588, 3627, 3634, 3641. Country: Canada. Reputation: known attacker.

  • 2026-03-16

    Observed 94 times. Targeted ports: 1701, 1702, 1737, 1749, 1758, 1808, 1879, 1890, 1909, 1911, 1913, 1962. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-14

    Observed 8 times. Targeted ports: 49146. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-13

    Observed 14 times. Targeted ports: 55286, 57284, 61625. Country: Canada. Reputation: known attacker.

  • 2026-03-12

    Observed 62 times. Targeted ports: 702, 800, 3401, 3552, 4080, 4503, 4926, 5948, 10002, 10653, 11251, 12046, 13198, 15056, 15402, 15743, 17074, 18082, 18338. Country: Canada. Reputation: known attacker.

  • 2026-03-11

    Observed 21 times. Targeted ports: 21729, 23381, 25053. Country: Canada. Reputation: known attacker.

  • 2026-03-10

    Observed 14 times. Targeted ports: 9074, 9094. Country: Canada. Reputation: known attacker.

  • 2026-03-09

    Observed 15 times. Targeted ports: 13834, 17119. Country: Canada. Reputation: known attacker.

  • 2026-03-08

    Observed 168 times. Targeted ports: 4770, 4784, 4788, 4808, 4809, 4811, 4820, 4827, 5130, 5307, 5320, 5360, 5417, 5422, 5457, 5470, 5472, 5490, 5503, 5543, 5553, 5591, 5614. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-07

    Observed 101 times. Targeted ports: 482, 996, 5030, 7095, 7171, 7278, 7315, 8032, 8120, 8172, 8204, 8492, 8569, 8597, 8925, 9140, 9596, 9598, 9991, 10771. Country: Canada. Reputation: known attacker.

  • 2026-03-06

    Observed 3 times. Targeted ports: 8443. Country: Canada. Reputation: known attacker.

  • 2026-03-05

    Observed 7 times. Targeted ports: 60913, 65011, 65366. Country: Canada. Reputation: known attacker.

  • 2026-03-04

    Observed 70 times. Targeted ports: 13577, 21254, 23669, 24004, 37022, 37583, 40449, 43833, 44808. Country: Canada. Reputation: known attacker.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
275818
46.225.129.99
IP malware 11 2026-05-21 11:14:44 IOC Record
295545
88.99.213.30
IP malware 11 2026-05-21 11:03:30 IOC Record
325065
186.212.30.231
IP malware 11 2026-05-21 10:30:13 IOC Record
346913
179.247.165.244
IP honeypot 4 2026-05-21 10:24:33 IOC Record
181792
85.217.149.2
IP honeypot 4 2026-05-21 10:24:33 IOC Record