IOC Details

IP

Indicator

85.217.140.47

Tag

honeypot

Source

4

First seen

2026-03-05 14:03:55

Last seen

2026-05-20 20:48:35

Hits

171

Comment history

  • 2026-05-20

    Observed 6 times. Targeted ports: 722, 845. Country: France.

  • 2026-05-19

    Observed 7 times. Targeted ports: 34158. Country: France.

  • 2026-05-18

    Observed 4 times. Targeted ports: 534, 602. Country: France.

  • 2026-05-17

    Observed 6 times. Targeted ports: 42, 493. Country: France. Reputation: known attacker.

  • 2026-05-16

    Observed 7 times. Targeted ports: 296, 745. Country: France. Reputation: known attacker.

  • 2026-05-15

    Observed 6 times. Targeted ports: 391, 984. Country: Bulgaria.

  • 2026-05-14

    Observed 3 times. Targeted ports: 1017. Country: France.

  • 2026-05-13

    Observed 1 times. Targeted ports: 123. Country: France. Reputation: known attacker.

  • 2026-05-12

    Observed 106 times. Targeted ports: 1456, 1462, 1464, 1469, 1476, 1488, 1498, 1522, 1524, 1532, 1533, 1547, 1549, 1558. Country: France. Reputation: known attacker.

  • 2026-05-11

    Observed 35 times. Targeted ports: 1028, 1034, 1046, 1063. Country: France. Reputation: known attacker. Alert categories: Misc activity. Signatures: ET INFO SSH session in progress on Unusual Port.

  • 2026-05-10

    Observed 3 times. Targeted ports: 105. Country: France. Reputation: known attacker.

  • 2026-05-09

    Observed 9 times. Targeted ports: 15, 336, 938. Country: France. Reputation: known attacker.

  • 2026-05-08

    Observed 76 times. Targeted ports: 2930, 3310, 4540, 9411, 10380, 10584, 11567, 12024, 13540, 13683, 14113, 14944, 39809, 53805, 63638, 64565. Country: France. Reputation: known attacker.

  • 2026-05-07

    Observed 3 times. Targeted ports: 254. Country: France. Reputation: known attacker.

  • 2026-05-06

    Observed 3 times. Targeted ports: 989. Country: France. Reputation: known attacker.

  • 2026-05-05

    Observed 3 times. Targeted ports: 405. Country: France. Reputation: known attacker.

  • 2026-05-04

    Observed 3 times. Targeted ports: 36. Country: France. Reputation: known attacker.

  • 2026-05-03

    Observed 6 times. Targeted ports: 908, 1012. Country: France. Reputation: known attacker.

  • 2026-05-02

    Observed 3 times. Targeted ports: 315. Country: France.

  • 2026-05-01

    Observed 10 times. Targeted ports: 159, 303, 397, 472. Country: France.

  • 2026-04-30

    Observed 3 times. Targeted ports: 786. Country: France.

  • 2026-04-29

    Observed 21 times. Targeted ports: 1038, 1072, 1089. Country: France.

  • 2026-04-28

    Observed 6 times. Targeted ports: 1082. Country: France.

  • 2026-04-27

    Observed 6 times. Targeted ports: 70, 343. Country: France.

  • 2026-04-26

    Observed 8 times. Targeted ports: 616, 9180. Country: France.

  • 2026-04-23

    Observed 6 times. Targeted ports: 574, 854. Country: France.

  • 2026-04-22

    Observed 8 times. Targeted ports: 731, 10033. Country: France.

  • 2026-04-21

    Observed 1 times. Targeted ports: 964. Country: France.

  • 2026-04-10

    Observed 12 times. Targeted ports: 651, 780, 828, 944. Country: France. Reputation: known attacker.

  • 2026-03-26

    Observed 8 times. Targeted ports: 39900. Country: France.

  • 2026-03-25

    Observed 147 times. Targeted ports: 1165, 2873, 2997, 3054, 3109, 3142, 3383, 3611, 7817, 7829, 8462, 9592, 9593, 9781, 9789, 9796, 11684, 11686, 11829, 11857, 12401. Country: France. Reputation: known attacker.

  • 2026-03-22

    Observed 6 times. Targeted ports: 23051. Country: France. Reputation: known attacker.

  • 2026-03-21

    Observed 9 times. Targeted ports: 8005, 8183, 8185. Country: Bulgaria.

  • 2026-03-20

    Observed 156 times. Targeted ports: 1451, 1457, 1713, 2957, 3694, 6330, 6332, 6337, 6338, 6342, 6463, 6704, 6707, 8006, 8088, 8168, 8245, 8293, 8296, 8298, 8343, 8383, 8424, 8477, 8525. Country: France. Reputation: known attacker.

  • 2026-03-19

    Observed 21 times. Targeted ports: 35675. Country: Bulgaria.

  • 2026-03-18

    Observed 24 times. Targeted ports: 3773, 3807, 3830, 4116, 4177, 4373, 4375. Country: France. Reputation: known attacker.

  • 2026-03-16

    Observed 13 times. Targeted ports: 1982, 2013. Country: Bulgaria.

  • 2026-03-15

    Observed 30 times. Targeted ports: 27905, 29353, 29596, 33572. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-14

    Observed 16 times. Targeted ports: 7552, 61563. Country: Bulgaria. Reputation: known attacker.

  • 2026-03-13

    Observed 39 times. Targeted ports: 31, 39, 62, 192, 312, 427, 484, 604, 607, 655, 740, 828, 933. Country: France.

  • 2026-03-10

    Observed 171 times. Targeted ports: 8291, 8322, 8333, 8340, 8410, 8411, 8423, 8457, 8531, 8561, 8577, 8602, 8610, 8681, 8682, 8683, 8704, 8733, 8850, 8857, 9063, 9108, 9113. Country: France. Reputation: known attacker.

  • 2026-03-09

    Observed 83 times. Targeted ports: 6632, 6679, 6732, 6739, 6740, 6741, 6897, 7005, 7742, 7870, 7930. Country: France. Reputation: known attacker.

  • 2026-03-08

    Observed 46 times. Targeted ports: 5073, 5168, 5464, 5554, 5568, 5597, 5600. Country: Bulgaria.

  • 2026-03-07

    Observed 97 times. Targeted ports: 187, 197, 238, 444, 496, 752, 889, 1252, 2177, 2288, 2981, 3106, 3670, 3678, 3706, 3777. Country: France. Reputation: known attacker.

  • 2026-03-06

    Observed 29 times. Targeted ports: 2068, 2181, 2191, 2224. Country: France. Reputation: known attacker.

  • 2026-03-05

    Observed 18 times. Targeted ports: 34500, 56701, 60004, 60036, 60090, 62993. Country: France.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
291843
89.58.9.56
IP malware 11 2026-05-20 20:55:02 IOC Record
346399
45.230.128.69
IP honeypot 4 2026-05-20 20:49:05 IOC Record
46384
91.196.152.127
IP honeypot 4 2026-05-20 20:49:05 IOC Record
26241
91.196.152.32
IP honeypot 4 2026-05-20 20:49:05 IOC Record
11243
185.44.67.96
IP honeypot 4 2026-05-20 20:49:05 IOC Record