85.19.195.12 Threat Intelligence and Host Information

General

IP Address
85.19.195.12
IPv4 Address
Location
🇳🇴 Larvik, Norway
NO
Network
AS25400
Telia Norge AS
Threat Score
55/100
High Risk
2026-012026-02adresseipatiffeedauto-generatedsecurity
Attack Intelligence
MITRE ATT&CK Techniques
T1110.001 - Password Guessing, T1110.002 - Password Cracking, T1110.003 - Password Spraying, T1110 - Brute Force, T1498 - Network Denial of Service
Open Ports Detected
21
Geographic Location
Country
Norway
City
Larvik
Region
Vestfold og Telemark
Coordinates
59.0306, 10.0666
Network Information
ASN
AS25400
Organization
Telia Norge AS
Network
AS25400 Telia Norge AS
WHOIS Information
inetnum
85.19.0.0 - 85.19.255.255
org
ORG-TEN1-RIPE
admin-c
DVS10-RIPE
netname
NO-TELE1-20050316
country
NO
geofeed
https://lg.telia.net/ripe/AS25400_geofeed.csv
tech-c
DVS10-RIPE
status
ALLOCATED PA
mnt-by
TELE1-NO-MNT
mnt-routes
TELE1-NO-MNT
created
2014-01-09T08:52:31Z
last-modified
2014-01-09T08:52:31Z
organisation
ORG-TEN1-RIPE
org-name
Telia Norge AS
org-type
LIR
address
Norway
phone
+4721502100
fax-no
+47 2150 2151
mnt-ref
RIPE-NCC-HM-MNT
abuse-c
TENO2-RIPE
role
Tele1 Europe Norways role Object
nic-hdl
TENO2-RIPE
abuse-mailbox
abuse@telia-isp.no
route
85.19.0.0/16
Attack Logs
Date Target Location Protocol Link
2026-03-16 Vultrtokyo SSH View Log

  • Country: Norway
  • Network:
  • Noticed: 50 times
  • Protocols Attacked: portscan ssh
  • Countries Attacked: Belgium, Malaysia, Sweden
Disclaimer
This page contains threat intelligence information for the IPv4 address 85.19.195.12 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.