IOC Details

IP

Indicator

65.49.1.235

Tag

honeypot

Source

4

First seen

2026-02-24 23:40:41

Last seen

2026-05-12 13:14:41

Hits

44

Comment history

  • 2026-05-12

    Observed 7 times. Targeted ports: 3790. Country: United States. Reputation: known attacker.

  • 2026-05-11

    Observed 5 times. Targeted ports: 4117. Country: United States. Reputation: known attacker.

  • 2026-05-08

    Observed 2 times. Targeted ports: 179. Country: United States. Reputation: known attacker.

  • 2026-05-04

    Observed 5 times. Targeted ports: 9060. Country: United States. Reputation: known attacker.

  • 2026-04-30

    Observed 4 times. Targeted ports: 2000. Country: United States. Reputation: known attacker.

  • 2026-04-28

    Observed 4 times. Targeted ports: 49670. Country: United States. Reputation: known attacker.

  • 2026-04-22

    Observed 6 times. Targeted ports: 80. Country: United States. Reputation: known attacker. Alert categories: Generic Protocol Command Decode. Signatures: SURICATA STREAM Packet with broken ack.

  • 2026-03-28

    Observed 6 times. Targeted ports: 8006. Country: United States. Reputation: known attacker.

  • 2026-03-25

    Observed 2 times. Targeted ports: 5900. Country: United States. Reputation: known attacker.

  • 2026-03-21

    Observed 4 times. Targeted ports: 3001. Country: United States. Reputation: known attacker.

  • 2026-03-16

    Observed 4 times. Targeted ports: 1098. Country: United States. Reputation: known attacker.

  • 2026-03-14

    Observed 5 times. Targeted ports: 6002. Country: United States. Reputation: known attacker.

  • 2026-03-13

    Observed 12 times. Targeted ports: 443, 23456. Country: United States. Reputation: known attacker.

  • 2026-03-12

    Observed 4 times. Targeted ports: 2375. Country: United States. Reputation: known attacker.

  • 2026-03-11

    Observed 2 times. Targeted ports: 87. Country: United States. Reputation: known attacker.

  • 2026-03-10

    Observed 4 times. Targeted ports: 8040. Country: United States. Reputation: known attacker.

  • 2026-03-09

    Observed 5 times. Targeted ports: 8081. Country: United States. Reputation: known attacker.

  • 2026-03-08

    Observed 6 times. Targeted ports: 5443. Country: United States. Reputation: known attacker.

  • 2026-03-07

    Observed 1 times. Targeted ports: 9000. Country: United States. Reputation: known attacker.

  • 2026-03-06

    Observed 2 times. Country: United States. Reputation: known attacker. Alert categories: Attempted Administrator Privilege Gain. Signatures: ET EXPLOIT Possible CVE-2020-11900 IP-in-IP tunnel Double-Free.

  • 2026-03-05

    Observed 2 times. Targeted ports: 86. Country: United States. Reputation: known attacker.

  • 2026-03-04

    Observed 5 times. Targeted ports: 6161. Country: United States. Reputation: known attacker.

Related IOCs

ID Indicator Type Tag Source Last seen Actions
337742
204.76.203.15
IP honeypot 4 2026-05-13 07:38:38 IOC Record
328128
109.105.211.10
IP honeypot 4 2026-05-13 07:38:38 IOC Record
315205
87.251.64.157
IP honeypot 4 2026-05-13 07:38:38 IOC Record
292353
66.132.172.250
IP honeypot 4 2026-05-13 07:38:38 IOC Record
28472
91.231.89.114
IP honeypot 4 2026-05-13 07:38:38 IOC Record