185.12.14.32

Classification: Suspicious

185.12.14.32 is a suspicious IP address. Linked to Darkgate malware. Reported by 3 threat sources, last seen 2026-04-03. Network: AS50673 Customer Ip Range.

MITRE ATT&CK associations

Malware families: DARKGATE (S1111)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Mail Spammer Barracuda 2026-04-03 19:55:23 2026-04-03 19:55:23
DarkGate ThreatFox Abuse.ch 2023-10-12 14:17:04 2023-10-14 13:19:13 malicious-activity S1111 DarkGate
Mail Spammer Abuseat.org 2023-10-12 14:17:10 2023-10-12 14:17:10

Tags

port:1515 meh port:666

Whois information

AS name
AS50673 Customer Ip Range
AS registry
ripencc
AS date
2012-12-03 00:00:00
AS CIDR
185.12.12.0/22
CIDR
185.12.14.0/24
Registrant
Customer Ip Range
Address
Serverius De Linge 26 8253 PJ Dronten The Netherlands
City
Dronten
Postal code
8251 RS
Country
NL — Netherlands 🇳🇱
Contact email
[email protected]
First indexed
2023-10-12 14:17:04
Last updated
2026-04-03 19:55:25