IOC Details

IP

Indicator

85.217.149.73

Tag

honeypot

Source

4

First seen

2026-03-04 15:01:53

Last seen

2026-05-30 21:07:45

Hits

194

Comment history

  • 2026-05-30

    Observed 7 times. Targeted ports: 4236, 5138, 7293, 9129, 12099, 12100. Country: Canada. Reputation: known attacker.

  • 2026-05-29

    Observed 106 times. Targeted ports: 22391, 22400, 22424, 22439, 22465, 22485, 22495, 22504, 22521, 22527, 22550, 22558, 22561, 22567. Country: Canada. Alert categories: Misc activity. Signatures: ET INFO SSH session in progress on Unusual Port.

  • 2026-05-28

    Observed 6 times. Targeted ports: 55, 171. Country: Canada.

  • 2026-05-27

    Observed 7 times. Targeted ports: 21811. Country: Canada.

  • 2026-05-26

    Observed 6 times. Targeted ports: 103, 201. Country: Canada.

  • 2026-05-25

    Observed 3 times. Targeted ports: 556. Country: Canada. Reputation: known attacker.

  • 2026-05-24

    Observed 3 times. Targeted ports: 623. Country: Canada.

  • 2026-05-23

    Observed 1 times. Targeted ports: 933. Country: Canada. Reputation: known attacker.

  • 2026-05-22

    Observed 6 times. Targeted ports: 761, 39661. Country: Canada.

  • 2026-05-21

    Observed 22 times. Targeted ports: 17, 133, 297, 560, 590, 778, 918. Country: Bulgaria. Reputation: known attacker.

  • 2026-05-20

    Observed 6 times. Targeted ports: 132, 773. Country: Canada. Reputation: known attacker.

  • 2026-05-19

    Observed 3 times. Targeted ports: 720. Country: Canada.

  • 2026-05-18

    Observed 3 times. Targeted ports: 875. Country: Canada. Reputation: known attacker.

  • 2026-05-17

    Observed 3 times. Targeted ports: 1011. Country: Canada. Reputation: known attacker.

  • 2026-05-16

    Observed 4 times. Targeted ports: 242. Country: Canada. Reputation: known attacker.

  • 2026-05-15

    Observed 3 times. Targeted ports: 281. Country: Bulgaria.

  • 2026-05-14

    Observed 9 times. Targeted ports: 137, 765, 825. Country: Canada. Reputation: known attacker.

  • 2026-05-13

    Observed 3 times. Targeted ports: 35. Country: Canada. Reputation: known attacker.

  • 2026-05-12

    Observed 54 times. Targeted ports: 1340, 1359, 1404, 1412, 1420, 1421, 1703. Country: Canada.

  • 2026-05-11

    Observed 6 times. Targeted ports: 661, 940. Country: Canada.

  • 2026-05-10

    Observed 48 times. Targeted ports: 1164, 1171, 1178, 1203, 1220. Country: Canada. Reputation: known attacker.

  • 2026-05-09

    Observed 3 times. Targeted ports: 636. Country: Canada. Reputation: known attacker.

  • 2026-05-08

    Observed 32 times. Targeted ports: 219, 582, 15238, 21087, 22294, 27139, 64696, 65363. Country: Canada. Reputation: known attacker.

  • 2026-05-07

    Observed 3 times. Targeted ports: 397. Country: Canada. Reputation: known attacker.

  • 2026-05-06

    Observed 3 times. Targeted ports: 302. Country: Canada. Reputation: known attacker.

  • 2026-05-05

    Observed 6 times. Targeted ports: 390, 753. Country: Canada. Reputation: known attacker.

  • 2026-05-04

    Observed 3 times. Targeted ports: 568. Country: Canada. Reputation: known attacker.

  • 2026-05-03

    Observed 3 times. Targeted ports: 834. Country: Canada. Reputation: known attacker.

  • 2026-05-02

    Observed 7 times. Targeted ports: 623, 13308. Country: Canada. Alert categories: Misc Attack. Signatures: ET CINS Active Threat Intelligence Poor Reputation IP group 127.

  • 2026-05-01

    Observed 9 times. Targeted ports: 267, 560, 1018. Country: Canada.

  • 2026-04-30

    Observed 3 times. Targeted ports: 351. Country: Canada.

  • 2026-04-29

    Observed 132 times. Targeted ports: 1206, 1233, 1234, 1284, 1378, 1446, 1470, 1645, 1646, 1668, 1673, 1677, 1686, 1697, 1698, 1751, 1781, 1808, 1853, 1877, 1929, 1950. Country: Canada.

  • 2026-04-28

    Observed 7 times. Targeted ports: 1934. Country: Canada.

  • 2026-04-27

    Observed 3 times. Targeted ports: 391. Country: Canada.

  • 2026-04-26

    Observed 25 times. Targeted ports: 438, 465, 615, 10011, 12133, 12249. Country: Canada.

  • 2026-04-23

    Observed 3 times. Targeted ports: 753. Country: Canada.

  • 2026-04-22

    Observed 3 times. Targeted ports: 985. Country: Canada.

  • 2026-04-21

    Observed 9 times. Targeted ports: 41774. Country: Canada.

  • 2026-04-10

    Observed 5 times. Targeted ports: 10047. Country: Canada. Reputation: known attacker.

  • 2026-03-28

    Observed 8 times. Targeted ports: 1426. Country: Bulgaria.

  • 2026-03-27

    Observed 115 times. Targeted ports: 4437, 4439, 4440, 7739, 7886, 8426, 8515, 8607, 8615, 8936, 8991, 9070, 29667, 50162, 52690. Country: Canada. Reputation: known attacker.

  • 2026-03-25

    Observed 52 times. Targeted ports: 11370, 13964, 22487, 23381, 25053, 40430, 61806. Country: Canada. Reputation: known attacker.

  • 2026-03-23

    Observed 14 times. Targeted ports: 4651, 5055. Country: Canada. Reputation: known attacker.

  • 2026-03-22

    Observed 23 times. Targeted ports: 44362, 51323, 51353. Country: Canada. Reputation: known attacker.

  • 2026-03-21

    Observed 28 times. Targeted ports: 5357, 5804, 5807, 5808. Country: Bulgaria.

  • 2026-03-20

    Observed 43 times. Targeted ports: 21811, 25191, 25370, 43889, 53553, 53619. Country: Canada. Reputation: known attacker.

  • 2026-03-19

    Observed 7 times. Targeted ports: 56671. Country: Bulgaria.

  • 2026-03-18

    Observed 15 times. Targeted ports: 14, 71, 85, 501, 573. Country: Canada. Reputation: known attacker.

  • 2026-03-16

    Observed 30 times. Targeted ports: 10598, 21776, 37000, 37950. Country: Bulgaria.

  • 2026-03-15

    Observed 12 times. Targeted ports: 19960. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-14

    Observed 49 times. Targeted ports: 29137, 29955, 32722, 32724, 34796, 34897, 35094. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-13

    Observed 24 times. Targeted ports: 170, 223, 255, 370, 373, 393, 710, 1017. Country: Canada.

  • 2026-03-12

    Observed 94 times. Targeted ports: 54, 928, 3372, 4079, 4210, 4405, 4585, 4684, 6336, 6556, 8953, 10480, 11098, 11176, 11179, 11288, 11531, 11568, 11692, 12126, 12200, 12223, 12826, 15539, 15996, 17283. Country: Canada. Reputation: known attacker.

  • 2026-03-11

    Observed 30 times. Targeted ports: 11759, 13920, 21101, 22199. Country: Canada. Reputation: known attacker.

  • 2026-03-10

    Observed 21 times. Targeted ports: 9067, 9069, 9101. Country: Canada. Reputation: known attacker.

  • 2026-03-09

    Observed 6 times. Targeted ports: 568, 949. Country: Canada. Reputation: known attacker.

  • 2026-03-08

    Observed 64 times. Targeted ports: 4942, 5006, 5279, 5305, 5311, 5341, 5342, 5363. Country: Bulgaria.

  • 2026-03-06

    Observed 47 times. Targeted ports: 1660, 1974, 3566, 3785, 5568, 5686, 5818, 8253, 8377, 8400, 9273, 10041, 10063, 10097, 13714, 18098. Country: Canada. Reputation: known attacker.

  • 2026-03-05

    Observed 34 times. Targeted ports: 52573, 53056, 55456, 57119, 57293, 59796, 60063, 61421, 61437, 64497. Country: Canada. Reputation: known attacker.

  • 2026-03-04

    Observed 62 times. Targeted ports: 4180, 4877, 7443, 9982, 22413, 25505, 35011, 41608, 46296, 50028, 50151. Country: Canada.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
334144
159.223.161.181
IP malware 11 2026-05-30 22:19:12 IOC Record
343343
47.253.93.53
IP honeypot 4 2026-05-30 22:11:44 IOC Record
329789
154.83.197.55
IP honeypot 4 2026-05-30 22:11:44 IOC Record
292476
66.132.172.240
IP honeypot 4 2026-05-30 22:11:44 IOC Record
40100
162.216.150.81
IP honeypot 4 2026-05-30 22:11:44 IOC Record