85.203.15.248

Classification: Malicious

85.203.15.248 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-11. Network: AS62240 Falco Networks B.V..

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • VPN node — Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Empty reason Blocklist.net.ua 2026-09-04 16:33:03 2026-09-11 16:31:41 attacker malicious-activity
DDoS Attacker Blocklist.net.ua 2026-05-17 12:00:56 2026-09-05 16:30:50 attacker malicious-activity
VPN IPWhois.io 2025-03-26 06:49:25 2026-09-04 03:46:55 anonymization vpn
Suspicious Host AbuseIPDB 2024-09-28 00:20:16 2026-06-05 19:20:00 anomalous-activity
HTTP Spammer StopForumSpam.com 2024-11-16 21:41:17 2025-09-28 10:06:30 malicious-activity
HTTP Spammer Sblam 2025-07-07 09:00:20 2025-07-07 09:01:40 malicious-activity
Proxy IPWhois.io 2024-12-17 15:16:15 2025-06-16 05:33:28 anonymization

Tags

bot abuse

Whois information

AS name
AS62240 Falco Networks B.V.
AS registry
ripencc
AS date
2005-01-12 00:00:00
AS CIDR
85.203.15.0/24
Registrant
Falco Networks B.V.
City
Frankfurt am Main
Postal code
60311
Country
DE — Germany 🇩🇪
First indexed
2024-09-28 07:17:41
Last updated
2026-09-11 16:31:41

Malicious IPs in the same CIDR

85.203.15.33 85.203.15.198 85.203.15.202 85.203.15.213 85.203.15.242 85.203.15.196 85.203.15.197 85.203.15.201 85.203.15.207 85.203.15.228 85.203.15.246 85.203.15.232 85.203.15.234 85.203.15.248 85.203.15.101 85.203.15.106 85.203.15.107 85.203.15.149 85.203.15.86 85.203.15.91 85.203.15.98 85.203.15.109 85.203.15.122 85.203.15.169 85.203.15.191