AbuseIPDB » 85.187.232.147

85.187.232.147
Recent Activity This IP has received recent abuse reports, which causes the score to increase.
69 reports found in our database
100% Critical
Abuse confidence score ?
ISP
Undola Net
Usage Type
Fixed Line ISP
ASN
Domain Name
abv.bg
Country
🇧🇬 Bulgaria
City
Velingrad, Pazardzhik

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 85.187.232.147:

This IP address has been reported a total of 69 times from 36 distinct sources. 85.187.232.147 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 25 reports; Germany with 8 reports; France with 8 reports. The most common categories in these recent reports were: Port Scan 52 times; SSH 23 times; Brute-Force 19 times; Hacking 15 times; IoT Targeted 3 times; Other 6 times.

Reporter IoA Timestamp (UTC) Comment Categories
🇫🇮 mikkopal88
SSH scan or brute-force attempt
Brute-Force SSH
🇺🇸 MPL
tcp ports: 22,23 (8 or more attempts)
Port Scan
🇷🇸 Scan
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan Hacking
🇨🇦 polycoda
AutoBlock: 📡 Port 22 Scan (Non Decay-Based)
Port Scan SSH
Anonymous
PORT & IP Scan.
Port Scan Brute-Force
🇺🇸 RAP
2026-09-03 09:33:11 UTC Unauthorized activity to TCP port 22. SSH
SSH
🇦🇹 urnilxfgbez
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
🇺🇸 MPL
tcp ports: 23,22 (6 or more attempts)
Port Scan
🇺🇸 MPL
tcp ports: 23,22 (8 or more attempts)
Port Scan
🇫🇷 security.rdmc.fr
Port Scan Attack proto:TCP src:30028 dst:23
Port Scan
🇺🇸 benjensen
SSH honeypot — automated credential stuffing and scanning detected by Cowrie honeypot
Brute-Force SSH
🇰🇷 winter
Connection attemp from 85.187.232.147 to port 22
Brute-Force SSH
🇺🇸 RAP
2026-08-30 16:39:14 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
🇺🇸 MPL
tcp ports: 22,23 (12 or more attempts)
Port Scan
🇺🇸 cwytech
Fleet-wide ban from the Ghostfleet 👻. Triggered by scenario: cwy/pf-geofence-high.
Hacking

Showing 1 to 15 of 69 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇰🇷 210.114.22.126
🇺🇸 195.184.76.247
🇧🇪 188.95.55.126
🇵🇷 72.50.7.94
🇰🇷 59.13.173.191
🇹🇼 220.143.28.76
🇺🇦 195.191.104.74
🇮🇳 182.48.214.161
🇻🇳 180.148.3.155
🇧🇷 177.43.83.43
🇩🇪 172.217.33.214
🇺🇸 172.191.239.155
🇨🇳 121.229.202.143
🇮🇳 117.247.113.190
🇷🇺 109.173.107.163
🇨🇳 106.35.130.168