IP address 213.175.186.85 has been flagged in 154 abuse reports across 8 independent threat intelligence sources, resulting in a threat score of 100.0/100 (critical risk). The primary activity associated with this IP is aggregated threat, along with malicious, malware c2, malware infrastructure, port scan, rdp bruteforce, reconnaissance, reputation low.
This IP is geolocated in Lebanon (Beirut) and belongs to the network IncoNet Data Management sal (AS9051). Reports span from 2026-05-05 to 2026-09-19.
Assessment: With 154 abuse reports, 213.175.186.85 shows persistent malicious activity that has been flagged by multiple threat intelligence feeds. Systematic port scanning activity from this IP indicates active reconnaissance of internet-facing services, typically a precursor to targeted exploitation.