IOC Details

IP

Indicator

85.217.149.72

Tag

honeypot

Source

4

First seen

2026-03-05 04:49:15

Last seen

2026-05-30 23:15:35

Hits

187

Comment history

  • 2026-05-30

    Observed 75 times. Targeted ports: 3151, 7179, 7219, 7220, 7226, 7245, 7250, 7256, 7259, 12076. Country: Canada. Reputation: known attacker. Alert categories: Misc activity. Signatures: ET INFO SSH session in progress on Unusual Port.

  • 2026-05-29

    Observed 3 times. Targeted ports: 814. Country: Canada.

  • 2026-05-28

    Observed 3 times. Targeted ports: 651. Country: Canada. Reputation: known attacker.

  • 2026-05-27

    Observed 18 times. Targeted ports: 94, 545, 807, 6301, 20825, 44177. Country: Canada.

  • 2026-05-26

    Observed 3 times. Targeted ports: 877. Country: Canada.

  • 2026-05-25

    Observed 32 times. Targeted ports: 25318, 25345, 25436, 25446, 62749. Country: Canada. Reputation: known attacker.

  • 2026-05-24

    Observed 9 times. Targeted ports: 48, 993, 1016. Country: Canada. Reputation: known attacker.

  • 2026-05-23

    Observed 3 times. Targeted ports: 992. Country: Canada. Reputation: known attacker.

  • 2026-05-22

    Observed 4 times. Targeted ports: 65. Country: Canada. Reputation: known attacker.

  • 2026-05-21

    Observed 12 times. Targeted ports: 314, 413, 546, 877. Country: Bulgaria.

  • 2026-05-20

    Observed 3 times. Targeted ports: 315. Country: Canada.

  • 2026-05-19

    Observed 3 times. Targeted ports: 973. Country: Canada. Reputation: known attacker.

  • 2026-05-18

    Observed 6 times. Targeted ports: 60, 852. Country: Canada.

  • 2026-05-17

    Observed 3 times. Targeted ports: 629. Country: Canada. Reputation: known attacker.

  • 2026-05-16

    Observed 10 times. Targeted ports: 643, 677, 924. Country: Canada. Reputation: known attacker.

  • 2026-05-15

    Observed 3 times. Targeted ports: 628. Country: Bulgaria.

  • 2026-05-14

    Observed 16 times. Targeted ports: 275, 321, 344, 500, 608, 615. Country: Canada. Reputation: known attacker.

  • 2026-05-13

    Observed 3 times. Targeted ports: 295. Country: Canada.

  • 2026-05-12

    Observed 70 times. Targeted ports: 1344, 1366, 1384, 1394, 1402, 1409, 1415, 1424, 1521. Country: Canada. Alert categories: Misc activity. Signatures: ET INFO SSH session in progress on Unusual Port.

  • 2026-05-11

    Observed 6 times. Targeted ports: 236, 824. Country: Canada. Reputation: known attacker.

  • 2026-05-10

    Observed 3 times. Targeted ports: 270. Country: Canada. Reputation: known attacker.

  • 2026-05-09

    Observed 6 times. Targeted ports: 412, 712. Country: Canada. Reputation: known attacker.

  • 2026-05-08

    Observed 77 times. Targeted ports: 241, 698, 915, 2451, 3945, 12140, 12187, 14209, 22613, 29562, 45966, 46600, 48190, 50714, 61203, 63721. Country: Canada. Reputation: known attacker.

  • 2026-05-07

    Observed 3 times. Targeted ports: 260. Country: Canada. Reputation: known attacker.

  • 2026-05-05

    Observed 6 times. Targeted ports: 546, 950. Country: Canada. Reputation: known attacker.

  • 2026-05-04

    Observed 3 times. Targeted ports: 703. Country: Canada. Reputation: known attacker.

  • 2026-05-03

    Observed 3 times. Targeted ports: 275. Country: Canada. Reputation: known attacker.

  • 2026-05-02

    Observed 3 times. Targeted ports: 964. Country: Canada.

  • 2026-05-01

    Observed 16 times. Targeted ports: 321, 676, 683, 732, 963. Country: Canada.

  • 2026-04-30

    Observed 6 times. Targeted ports: 344, 924. Country: Canada.

  • 2026-04-29

    Observed 3 times. Targeted ports: 848. Country: Canada.

  • 2026-04-28

    Observed 7 times. Targeted ports: 1901. Country: Canada.

  • 2026-04-27

    Observed 6 times. Targeted ports: 9206. Country: Canada.

  • 2026-04-26

    Observed 13 times. Targeted ports: 50, 321, 738, 931. Country: Canada.

  • 2026-04-23

    Observed 18 times. Targeted ports: 546, 833, 8839, 9888. Country: Canada.

  • 2026-04-22

    Observed 6 times. Targeted ports: 384, 46107. Country: Canada.

  • 2026-04-21

    Observed 13 times. Targeted ports: 125, 296, 12339. Country: Canada.

  • 2026-04-10

    Observed 18 times. Targeted ports: 17, 562, 10873, 12354. Country: Canada. Reputation: known attacker.

  • 2026-03-27

    Observed 9 times. Targeted ports: 5291. Country: Canada.

  • 2026-03-26

    Observed 202 times. Targeted ports: 4643, 4691, 4745, 4796, 4799, 4871, 4940, 5031, 5047, 5061, 5227, 5452, 5458, 5594, 5600, 5642, 5643, 5679, 5712, 5750, 5755, 5817, 5818, 5827, 5875, 5922, 5926, 5994, 55053. Country: Canada. Reputation: known attacker.

  • 2026-03-21

    Observed 27 times. Targeted ports: 175, 444, 644, 8812, 10018, 10566. Country: Canada. Reputation: known attacker.

  • 2026-03-20

    Observed 102 times. Targeted ports: 4503, 4504, 4976, 4981, 4983, 8018, 8109, 8120, 8163, 8339, 8351, 8481, 8521, 8522. Country: Canada. Reputation: known attacker.

  • 2026-03-19

    Observed 9 times. Targeted ports: 20213. Country: Bulgaria.

  • 2026-03-16

    Observed 40 times. Targeted ports: 1998, 2006, 2010, 2027, 2096. Country: Bulgaria.

  • 2026-03-15

    Observed 81 times. Targeted ports: 22096, 28836, 30301, 31279, 31568, 31608, 31701, 33375, 38210, 45924, 62479. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-14

    Observed 39 times. Targeted ports: 5901, 5902, 5903, 5904, 5905. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-13

    Observed 3 times. Targeted ports: 452. Country: Canada.

  • 2026-03-12

    Observed 91 times. Targeted ports: 99, 510, 530, 625, 953, 3959, 3999, 4135, 4363, 4388, 4587, 4795, 5183, 11080, 11109, 12013, 12174, 12315, 14998, 16812, 17083, 18008, 18175. Country: Canada. Reputation: known attacker.

  • 2026-03-11

    Observed 15 times. Targeted ports: 22487, 23319. Country: Canada. Reputation: known attacker.

  • 2026-03-10

    Observed 11 times. Targeted ports: 15057, 16079, 18512. Country: Canada. Reputation: known attacker.

  • 2026-03-09

    Observed 27 times. Targeted ports: 20, 56, 409, 460, 778, 781, 793, 828, 961. Country: Canada. Reputation: known attacker.

  • 2026-03-08

    Observed 59 times. Targeted ports: 4649, 5798, 5810, 5843, 5844, 5861, 5927, 5938. Country: Bulgaria.

  • 2026-03-07

    Observed 101 times. Targeted ports: 302, 620, 793, 877, 879, 1002, 1012, 5134, 5245, 5464, 6117, 7311, 7681, 8139, 8185, 8485, 8562, 8859, 9389, 9575, 9903, 10004. Country: Canada. Reputation: known attacker.

  • 2026-03-06

    Observed 50 times. Targeted ports: 2192, 2200, 2346, 2359, 2366, 2380, 2397. Country: Canada. Reputation: known attacker.

  • 2026-03-05

    Observed 3 times. Targeted ports: 61685. Country: Canada. Reputation: known attacker.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
351503
37.60.234.125
IP malware 11 2026-05-30 23:44:16 IOC Record
437
51.81.171.234
IP malware 11 2026-05-30 23:30:46 IOC Record
327957
45.198.224.7
IP honeypot 4 2026-05-30 23:17:57 IOC Record
323366
195.230.103.246
IP honeypot 4 2026-05-30 23:17:57 IOC Record
320137
216.25.89.134
IP honeypot 4 2026-05-30 23:17:57 IOC Record