IOC Details

IP

Indicator

85.217.149.54

Tag

honeypot

Source

4

First seen

2026-03-05 06:35:53

Last seen

2026-04-29 15:16:52

Hits

53

Comment history

  • 2026-04-29

    Observed 9 times. Targeted ports: 663, 10101. Country: Canada.

  • 2026-04-28

    Observed 7 times. Targeted ports: 1055. Country: Canada.

  • 2026-04-27

    Observed 3 times. Targeted ports: 485. Country: Canada.

  • 2026-04-26

    Observed 6 times. Targeted ports: 12372. Country: Canada.

  • 2026-04-23

    Observed 14 times. Targeted ports: 512, 627, 825, 9696. Country: Canada.

  • 2026-04-22

    Observed 3 times. Targeted ports: 125. Country: Canada.

  • 2026-04-21

    Observed 9 times. Targeted ports: 357, 12187. Country: Canada.

  • 2026-03-26

    Observed 9 times. Targeted ports: 51821. Country: Canada. Reputation: known attacker. Alert categories: Misc activity. Signatures: ET INFO SSH Client Banner Detected on Unusual Port, ET INFO SSH session in progress on Unusual Port.

  • 2026-03-24

    Observed 7 times. Targeted ports: 1644. Country: Canada. Reputation: known attacker.

  • 2026-03-23

    Observed 8 times. Targeted ports: 2303. Country: Canada. Reputation: known attacker.

  • 2026-03-21

    Observed 14 times. Targeted ports: 2195, 5846. Country: Bulgaria.

  • 2026-03-19

    Observed 64 times. Targeted ports: 17536, 17539, 25329, 27575, 27577, 27605, 31302, 63802, 64372. Country: Bulgaria.

  • 2026-03-15

    Observed 14 times. Targeted ports: 24653, 34363, 41274. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-14

    Observed 8 times. Targeted ports: 110. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-13

    Observed 9 times. Targeted ports: 306, 564, 578. Country: Canada.

  • 2026-03-12

    Observed 90 times. Targeted ports: 3597, 3748, 3922, 4459, 4638, 4743, 4760, 6719, 8864, 9550, 9893, 10048, 10443, 10965, 11077, 11148, 11186, 11260, 12390, 12394, 13018, 15858, 16989, 17900. Country: Canada. Reputation: known attacker.

  • 2026-03-10

    Observed 109 times. Targeted ports: 8648, 8651, 8664, 8687, 8691, 8710, 8732, 8804, 9025, 9036, 9039, 9050, 9058, 9077. Country: Canada. Reputation: known attacker.

  • 2026-03-09

    Observed 2 times. Targeted ports: 10436. Country: Canada. Reputation: known attacker.

  • 2026-03-08

    Observed 168 times. Targeted ports: 3805, 3806, 3844, 3861, 3871, 3876, 3958, 4008, 4051, 4062, 4068, 4089, 4114, 4178, 4179, 4212, 4299, 4358, 4437, 4452, 4466, 4536, 4543. Country: Bulgaria.

  • 2026-03-07

    Observed 7 times. Targeted ports: 13415. Country: Canada. Reputation: known attacker.

  • 2026-03-06

    Observed 81 times. Targeted ports: 1529, 1586, 1606, 1790, 1801, 1802, 1864, 1935, 2601, 2616, 2627. Country: Canada. Reputation: known attacker.

  • 2026-03-05

    Observed 6 times. Targeted ports: 55456, 59843. Country: Canada. Reputation: known attacker.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
91
13.60.223.123
IP malware 11 2026-04-29 20:47:04 IOC Record
27915
86.54.31.32
IP honeypot 4 2026-04-29 20:36:27 IOC Record
323908
13.52.216.125
IP honeypot 4 2026-04-29 20:36:26 IOC Record
322726
68.79.31.179
IP honeypot 4 2026-04-29 20:36:26 IOC Record
322720
52.83.125.157
IP honeypot 4 2026-04-29 20:36:26 IOC Record