IOC Details

IP

Indicator

85.217.149.25

Tag

honeypot

Source

4

First seen

2026-03-04 11:37:00

Last seen

2026-05-26 10:52:49

Hits

193

Comment history

  • 2026-05-26

    Observed 9 times. Targeted ports: 42, 525, 817. Country: Canada. Reputation: known attacker.

  • 2026-05-25

    Observed 18 times. Targeted ports: 121, 200, 260, 383, 779, 42007. Country: Canada. Reputation: known attacker.

  • 2026-05-24

    Observed 6 times. Targeted ports: 55, 536. Country: Canada. Reputation: known attacker.

  • 2026-05-23

    Observed 3 times. Targeted ports: 682. Country: Canada. Reputation: known attacker.

  • 2026-05-22

    Observed 6 times. Targeted ports: 403, 536. Country: Canada. Reputation: known attacker.

  • 2026-05-21

    Observed 9 times. Targeted ports: 382, 402, 907. Country: Bulgaria.

  • 2026-05-20

    Observed 12 times. Targeted ports: 130, 453, 522, 49956. Country: Canada. Reputation: known attacker.

  • 2026-05-19

    Observed 8 times. Targeted ports: 17497. Country: Canada.

  • 2026-05-18

    Observed 3 times. Targeted ports: 616. Country: Canada. Reputation: known attacker.

  • 2026-05-17

    Observed 6 times. Targeted ports: 118, 329. Country: Canada. Reputation: known attacker.

  • 2026-05-16

    Observed 4 times. Targeted ports: 493. Country: Canada. Reputation: known attacker.

  • 2026-05-15

    Observed 13 times. Targeted ports: 472, 623, 753, 13302. Country: Bulgaria. Reputation: known attacker. Alert categories: Misc Attack. Signatures: ET CINS Active Threat Intelligence Poor Reputation IP group 124.

  • 2026-05-14

    Observed 3 times. Targeted ports: 118. Country: Canada.

  • 2026-05-13

    Observed 5 times. Targeted ports: 173, 180, 465. Country: Canada. Reputation: known attacker.

  • 2026-05-12

    Observed 4 times. Targeted ports: 405, 527. Country: Canada.

  • 2026-05-11

    Observed 7 times. Targeted ports: 65, 638. Country: Canada.

  • 2026-05-10

    Observed 80 times. Targeted ports: 1148, 1403, 1406, 1407, 1423, 1426, 1449, 1473. Country: Canada. Reputation: known attacker. Alert categories: Generic Protocol Command Decode. Signatures: SURICATA STREAM spurious retransmission.

  • 2026-05-09

    Observed 7 times. Targeted ports: 384, 786. Country: Canada. Reputation: known attacker.

  • 2026-05-08

    Observed 72 times. Targeted ports: 295, 589, 8087, 9964, 10320, 11833, 13969, 15524, 16303, 26423, 29158, 29459, 49936, 59885, 62975. Country: Canada. Reputation: known attacker.

  • 2026-05-07

    Observed 6 times. Targeted ports: 70, 152. Country: Canada.

  • 2026-05-06

    Observed 3 times. Targeted ports: 282. Country: Canada. Reputation: known attacker.

  • 2026-05-05

    Observed 235 times. Targeted ports: 622, 1060, 1066, 1071, 1079, 1084, 1091, 1095, 1106, 1107, 1108, 1111, 1112, 1117, 1122, 1126, 1129, 1132, 1135, 1139, 1142, 1145, 1147, 1161, 1165, 1167, 1168, 1171, 1185, 1186, 1193, 1196, 1202. Country: Canada.

  • 2026-05-04

    Observed 7 times. Targeted ports: 613, 736. Country: Canada. Reputation: known attacker.

  • 2026-05-03

    Observed 13 times. Targeted ports: 266, 296, 622, 724. Country: Canada. Reputation: known attacker.

  • 2026-05-02

    Observed 6 times. Targeted ports: 744, 922. Country: Canada. Reputation: known attacker.

  • 2026-05-01

    Observed 6 times. Targeted ports: 103, 745. Country: Canada. Reputation: known attacker.

  • 2026-04-30

    Observed 9 times. Targeted ports: 575, 52848. Country: Canada. Reputation: known attacker.

  • 2026-04-29

    Observed 46 times. Targeted ports: 1534, 1602, 1642, 1681, 1715, 1725, 1743. Country: Canada. Reputation: known attacker.

  • 2026-04-28

    Observed 6 times. Targeted ports: 13, 593. Country: Canada. Reputation: known attacker.

  • 2026-04-27

    Observed 1 times. Targeted ports: 241. Country: Canada. Reputation: known attacker.

  • 2026-04-26

    Observed 12 times. Targeted ports: 151, 685, 52025. Country: Canada. Reputation: known attacker.

  • 2026-04-23

    Observed 11 times. Targeted ports: 180, 295, 8893. Country: Canada. Reputation: known attacker.

  • 2026-04-22

    Observed 8 times. Targeted ports: 977, 32822. Country: Canada. Reputation: known attacker.

  • 2026-04-21

    Observed 19 times. Targeted ports: 8953, 11110, 12166, 64299. Country: Canada. Reputation: known attacker.

  • 2026-03-26

    Observed 22 times. Targeted ports: 3672, 6838, 12536. Country: Canada. Reputation: known attacker.

  • 2026-03-23

    Observed 33 times. Targeted ports: 3706, 3729, 16069, 27181, 27201. Country: Canada. Reputation: known attacker.

  • 2026-03-21

    Observed 7 times. Targeted ports: 8248. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-20

    Observed 114 times. Targeted ports: 5644, 5870, 5872, 6938, 6939, 6940, 6941, 7093, 8020, 8025, 8032, 8180, 8203, 8314, 8340, 8403. Country: Canada. Reputation: known attacker.

  • 2026-03-19

    Observed 3 times. Targeted ports: 46789. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-18

    Observed 43 times. Targeted ports: 179, 209, 238, 347, 465, 483, 661, 685, 689, 854, 929, 8686, 10037, 10101. Country: Canada. Reputation: known attacker.

  • 2026-03-17

    Observed 8 times. Targeted ports: 1869. Country: Canada. Reputation: known attacker.

  • 2026-03-16

    Observed 3 times. Targeted ports: 50212. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-15

    Observed 8 times. Targeted ports: 1524. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-14

    Observed 12 times. Targeted ports: 3389. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-13

    Observed 8 times. Targeted ports: 62224. Country: Canada. Reputation: known attacker.

  • 2026-03-12

    Observed 13 times. Targeted ports: 4285, 11182. Country: Canada. Reputation: known attacker.

  • 2026-03-09

    Observed 18 times. Targeted ports: 84, 181, 342, 525, 849, 981. Country: Canada. Reputation: known attacker.

  • 2026-03-08

    Observed 46 times. Targeted ports: 5169, 5170, 5435, 5458, 5500, 5555. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-07

    Observed 86 times. Targeted ports: 57, 223, 743, 900, 5221, 5716, 6418, 6709, 7673, 7726, 7809, 8055, 8177, 8519, 9136, 9990, 10008. Country: Canada. Reputation: known attacker.

  • 2026-03-06

    Observed 117 times. Targeted ports: 1627, 2458, 2462, 2478, 2479, 2481, 2486, 2514, 2528, 2581, 2584, 2652, 2654, 2655, 2752. Country: Canada. Reputation: known attacker.

  • 2026-03-05

    Observed 9 times. Targeted ports: 61436, 62088, 63237. Country: Canada. Reputation: known attacker.

  • 2026-03-04

    Observed 31 times. Targeted ports: 1257, 1296, 1354, 1475. Country: Canada. Reputation: known attacker.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
275792
45.138.48.85
IP malware 11 2026-05-26 10:58:06 IOC Record
39762
64.62.156.77
IP honeypot 4 2026-05-26 10:55:48 IOC Record
352270
194.124.43.164
IP honeypot 4 2026-05-26 10:55:47 IOC Record
348542
185.136.15.77
IP honeypot 4 2026-05-26 10:55:47 IOC Record
331356
165.154.172.152
IP honeypot 4 2026-05-26 10:55:47 IOC Record