85.203.15.248
Classification: Malicious
85.203.15.248 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-11. Network: AS62240 Falco Networks B.V..
Current activity
- Known attacker — Seen launching attacks over the Internet.
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Empty reason | Blocklist.net.ua | 2026-09-04 16:33:03 | 2026-09-11 16:31:41 | attacker malicious-activity | |
| DDoS Attacker | Blocklist.net.ua | 2026-05-17 12:00:56 | 2026-09-05 16:30:50 | attacker malicious-activity | |
| VPN | IPWhois.io | 2025-03-26 06:49:25 | 2026-09-04 03:46:55 | anonymization vpn | |
| Suspicious Host | AbuseIPDB | 2024-09-28 00:20:16 | 2026-06-05 19:20:00 | anomalous-activity | |
| HTTP Spammer | StopForumSpam.com | 2024-11-16 21:41:17 | 2025-09-28 10:06:30 | malicious-activity | |
| HTTP Spammer | Sblam | 2025-07-07 09:00:20 | 2025-07-07 09:01:40 | malicious-activity | |
| Proxy | IPWhois.io | 2024-12-17 15:16:15 | 2025-06-16 05:33:28 | anonymization |
Tags
bot abuseWhois information
- AS name
- AS62240 Falco Networks B.V.
- AS registry
- ripencc
- AS date
- 2005-01-12 00:00:00
- AS CIDR
- 85.203.15.0/24
- Registrant
- Falco Networks B.V.
- City
- Frankfurt am Main
- Postal code
- 60311
- Country
- DE — Germany 🇩🇪
- First indexed
- 2024-09-28 07:17:41
- Last updated
- 2026-09-11 16:31:41
Malicious IPs in the same CIDR
85.203.15.33 85.203.15.198 85.203.15.202 85.203.15.213 85.203.15.242 85.203.15.196 85.203.15.197 85.203.15.201 85.203.15.207 85.203.15.228 85.203.15.246 85.203.15.232 85.203.15.234 85.203.15.248 85.203.15.101 85.203.15.106 85.203.15.107 85.203.15.149 85.203.15.86 85.203.15.91 85.203.15.98 85.203.15.109 85.203.15.122 85.203.15.169 85.203.15.191