85.203.20.89
Classification: Suspicious
85.203.20.89 is a suspicious IP address. Reported by 5 threat sources, last seen 2026-09-06. Network: AS212238 Falco Networks B.V..
Current activity
- VPN node — Provides anonymization that can hide an attacker.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| VPN | IPWhois.io | 2025-05-18 10:55:30 | 2026-09-06 23:23:33 | anonymization vpn | |
| Suspicious Host | AbuseIPDB | 2024-07-28 03:07:30 | 2026-03-02 11:44:27 | anomalous-activity | |
| HTTP Spammer | StopForumSpam.com | 2017-10-15 18:37:26 | 2025-10-21 14:20:26 | malicious-activity | |
| DDoS attack on site on-planet.com | Blocklist.net.ua | 2023-03-07 07:35:33 | 2023-09-07 04:38:01 | malicious-activity | |
| HTTP Spammer | Cleantalk.org | 2023-02-17 06:47:02 | 2023-02-17 06:47:02 | malicious-activity |
Tags
abuse botWhois information
- AS name
- AS212238 Falco Networks B.V.
- AS registry
- ripencc
- AS date
- 2005-01-12 00:00:00
- AS CIDR
- 85.203.20.0/24
- Registrant
- Falco Networks B.V.
- City
- Zagreb
- Postal code
- 10112
- Country
- HR — Croatia 🇭🇷
- First indexed
- 2017-10-15 18:37:26
- Last updated
- 2026-09-06 23:23:34
Malicious IPs in the same CIDR
85.203.20.13 85.203.20.16 85.203.20.19 85.203.20.33 85.203.20.4 85.203.20.64 85.203.20.56 85.203.20.81 85.203.20.7 85.203.20.93 85.203.20.80 85.203.20.23