85.214.228.140
Classification: Whitelisted
85.214.228.140 is a whitelisted (trusted) IP address. Reported by 5 threat sources, last seen 2026-07-17. Network: AS6724 Strato GmbH.
Current activity
- Hosting provider — Shared hosting infrastructure.
MITRE ATT&CK associations
Malware families: FLUBOT (S1067)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Hosting Provider | Maltiverse | 2026-07-17 17:15:17 | 2026-07-17 17:15:17 | benign hosting | |
| pykspa_v2_real | Maltiverse Research Team | 2018-10-30 00:34:36 | 2022-07-07 00:27:21 | malicious-activity | |
| flubot | Maltiverse Research Team | 2022-03-07 01:19:48 | 2022-07-01 02:53:32 | malicious-activity | S1067 FluBot |
| Gen:Variant.Barys | Hybrid-Analysis | 2021-12-01 11:00:27 | 2021-12-01 11:00:27 | ||
| Gen:Variant.Adware.ConvertAd | Hybrid-Analysis | 2021-12-01 11:00:25 | 2021-12-01 11:00:25 | ||
| Worm.Pykspa | Hybrid-Analysis | 2019-06-13 09:15:16 | 2021-11-11 09:16:53 | ||
| Backdoor.Generic | Hybrid-Analysis | 2020-07-31 10:00:34 | 2021-09-27 08:15:37 | ||
| Worm.Autorun | Hybrid-Analysis | 2019-08-07 09:45:07 | 2021-09-27 08:00:39 | ||
| Malware | Hybrid-Analysis | 2019-12-29 19:00:07 | 2021-08-13 12:00:48 | ||
| Gen:Variant.Symmi | Hybrid-Analysis | 2019-06-03 08:46:55 | 2021-07-01 15:45:13 | ||
| Malware site | Hybrid-Analysis | 2019-11-24 18:00:07 | 2021-03-26 00:15:53 | ||
| Trojan.Agent | Hybrid-Analysis | 2021-02-01 13:30:34 | 2021-02-01 13:30:36 | ||
| Gen:Variant.Zusy | Hybrid-Analysis | 2020-07-17 10:17:10 | 2021-01-12 21:30:45 | ||
| suppobox | Maltiverse Research Team | 2018-10-03 01:51:25 | 2021-01-02 01:00:09 | malicious-activity | |
| Gen:Variant.Pykspa | Hybrid-Analysis | 2020-06-23 11:00:26 | 2020-12-02 09:00:31 | ||
| Backdoor.Zepfod | Hybrid-Analysis | 2020-03-18 07:30:25 | 2020-07-17 10:30:12 | ||
| Gen:Variant.Kazy | Hybrid-Analysis | 2019-01-03 03:45:04 | 2020-06-29 17:30:12 | ||
| Trojan.Chydo | Hybrid-Analysis | 2020-06-23 11:15:14 | 2020-06-23 11:15:14 | ||
| Generic.Malware | Hybrid-Analysis | 2019-05-17 21:00:07 | 2019-08-28 14:00:24 | ||
| Pykspa | Bambernek | 2018-10-30 06:50:08 | 2018-10-30 06:50:08 | ||
| suppobox | Telefonica CO SOC | 2018-09-30 18:58:59 | 2018-10-06 11:56:14 |
Tags
c&c c2 dga malware pykspaWhois information
- AS name
- AS6724 Strato GmbH
- AS registry
- ripencc
- AS date
- 2005-02-24 00:00:00
- AS CIDR
- 85.214.0.0/15
- CIDR
- 85.214.192.0/18
- Registrant
- Strato GmbH
- Address
- Pascalstrasse 10 10587 Berlin GERMANY
- City
- Berlin
- Postal code
- 10178
- Country
- DE — Germany 🇩🇪
- Contact email
- [email protected]
- First indexed
- 2018-09-30 18:58:59
- Last updated
- 2026-07-17 17:15:17
Malicious IPs in the same CIDR
85.214.64.22 85.214.200.184 85.214.111.133 85.214.149.151 85.214.107.177 85.214.231.81 85.214.66.157 85.214.190.195 85.214.44.216 85.214.55.41 85.214.37.179 85.214.135.175 85.215.181.244 85.214.212.126 85.214.215.40 85.215.146.57 85.214.153.232