85.203.44.140
Classification: Suspicious
85.203.44.140 is a suspicious IP address. Reported by 6 threat sources, last seen 2026-07-03. Network: AS42708 EXPRES 0 0.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| VPN | IPWhois.io | 2025-03-25 09:48:06 | 2026-07-03 18:48:42 | anonymization vpn | |
| HTTP bot | Blocklist.de | 2026-07-01 08:01:59 | 2026-07-01 08:01:59 | attacker malicious-activity | |
| Suspicious Host | AbuseIPDB | 2024-10-17 07:37:14 | 2026-06-06 19:00:24 | anomalous-activity | |
| Bruteforce login attacker | Blocklist.de | 2025-09-01 01:34:09 | 2025-09-02 07:55:23 | malicious-activity | |
| HTTP Attacker | Blocklist.de | 2025-09-01 00:58:39 | 2025-09-02 07:19:19 | malicious-activity | |
| HTTP Spammer | StopForumSpam.com | 2023-10-02 04:49:59 | 2025-08-04 12:19:34 | malicious-activity | |
| HTTP Spammer | Sblam | 2025-07-23 06:41:26 | 2025-07-24 08:07:10 | malicious-activity | |
| Proxy | IPWhois.io | 2025-02-20 07:02:25 | 2025-02-20 07:03:19 | anonymization | |
| Mail Spammer | Abuseat.org | 2023-10-02 04:50:00 | 2023-10-02 04:50:00 |
Tags
bot abuse apache ddos rfi attacker login bruteforce joomla wordpress spamWhois information
- AS name
- AS42708 EXPRES 0 0
- AS registry
- ripencc
- AS date
- 2005-01-12 00:00:00
- AS CIDR
- 85.203.44.0/24
- CIDR
- 85.203.44.0/24
- Registrant
- EXPRES 0 0
- Address
- Falco IPR B.V. De Hoefsmid 11-13 1851 PZ Heiloo The Netherlands
- City
- Stockholm
- Postal code
- 111 29
- Country
- SE — Sweden 🇸🇪
- First indexed
- 2023-10-02 04:49:59
- Last updated
- 2026-07-03 18:48:43
Malicious IPs in the same CIDR
85.203.44.238 85.203.44.242 85.203.44.207 85.203.44.7 85.203.44.56 85.203.44.254 85.203.44.14 85.203.44.26 85.203.44.90 85.203.44.109 85.203.44.153 85.203.44.156 85.203.44.178 85.203.44.228 85.203.44.31 85.203.44.62 85.203.44.106 85.203.44.130 85.203.44.151 85.203.44.229 85.203.44.232 85.203.44.237 85.203.44.244 85.203.44.144 85.203.44.139