IP Address

185.243.98.40

IPv4 Public
US US
AS48693
Rices Privately owned enterprise
232 Reports
This IP is under Observation Suspicious activity detected - monitor closely
10/10 Threat
66% Confidence
232 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Top 10% High Threat
US
US Location
Rices Privately owned ent... ASN 48693
232 Reports
Honeypot Data Source

Maximum Danger

IP address 185.243.98.40 is flagged as a critical-risk address with a threat level of 10 out of 10, associated exclusively with general hacking activity including intrusion attempts and exploitation of vulnerabilities. The address has accumulated 232 abuse reports sourced entirely from automated honeypot sensors over a single reporting period in February 2026, indicating sustained hostile reconnaissance behaviour despite the absence of ongoing activity at the time of analysis. Network registration data attributes this IP to Rices Privately owned enterprise operating under ASN 48693, registered to a United States entity, though the address block origin is atypical for North American allocation. The 66% confidence score reflects that attribution to the identified network operator carries moderate uncertainty, yet the volume and consistency of honeypot reports firmly establish malicious intent.

The 232 reports filed against this address represent concentrated automated detection events, with all 20 recent threat categorizations falling under the broad hacking classification. This umbrella term encompasses port scanning, vulnerability probing, brute-force authentication attempts, and exploitation of unpatched services. The fact that every single detection originated from honeypot infrastructure strongly suggests the address is part of an automated scanning campaign rather than isolated manual probing. Even though the reported activity frequency registers at zero at the time of last assessment, the historical report volume signals an address that has systematically probed network perimeters and is likely to resume operations or be reassigned to new infrastructure following takedown efforts.

Hacking activity of this nature poses concrete risks to any exposed service. Automated scanning can identify outdated software with known exploits, misconfigured services accepting weak credentials, or open ports associated with vulnerable applications. An address with a documented history of 232 honeypot hits has demonstrated intent and capability to exploit such weaknesses if given the opportunity. Organizations with SSH, RDP, web applications, or database services exposed to the internet face elevated risk from this source.

More threatening than 92% of monitored IPs

Threat Categories

Hacking 30

Technical Details

General hacking activity includes various intrusion attempts, exploitation of vulnerabilities, and unauthorized access attempts.

Recommended Mitigations

Keep systems patched, implement intrusion detection, and follow security best practices.

Moderate Network Risk

The network hosting this IP (ASN 48693, operated by Rices Privately owned enterprise) shows moderate threat indicators. Some concerning activity has been detected from neighboring addresses.

Consider the network context when assessing this individual IP.

Security Recommendations

Continue monitoring for emerging patterns.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 10/10 Critical
Critical
Activity Frequency 0/10 Inactive
Confidence Score 62% High Confidence

Confidence History

13. Feb 2026
66% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
Hacking Honeypot x38 75%
Hacking Honeypot x148 75%
Hacking Honeypot x342 75%
Hacking Honeypot x345 75%
Hacking Honeypot x213 75%
Hacking Honeypot x280 75%
Hacking Honeypot x348 75%
Hacking Honeypot x195 75%
Hacking Honeypot x54 75%
Hacking Honeypot x165 75%
Hacking Honeypot x366 75%
Hacking Honeypot x282 75%
Hacking Honeypot x176 75%
Hacking Honeypot x340 75%
Hacking Honeypot x346 75%
Hacking Honeypot x275 75%
Hacking Honeypot x344 75%
Hacking Honeypot x296 75%
Hacking Honeypot x417 75%
Hacking Honeypot x408 75%
Hacking Honeypot x333 75%
Hacking Honeypot x325 75%
Hacking Honeypot x302 75%
Hacking Honeypot x190 75%
Hacking Honeypot x308 75%
Hacking Honeypot x202 75%
Hacking Honeypot x240 75%
Hacking Honeypot x224 75%
Hacking Honeypot x197 75%
Hacking Honeypot x296 75%

Technical Details

Basic Information

IP Address
185.243.98.40
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class B

Geolocation

Country
US US
ASN
AS48693
ISP
Rices Privately owned enterprise

DNS Information

Reverse DNS
free.ntup.net
PTR Record
Yes
Connection Type
Static

Statistics

Total Reports
232
First Reported
9 Feb 2026
Last Reported
13 Feb 2026, 22:02

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS48693
Rices Privately owned enterprise
UA UA

Network Threat Assessment

4/10
This network has low threat indicators with minimal suspicious activity.

Network Statistics

10
Total IPs Monitored
111,079
Total Reports
11107.9
Reports per IP

Network Context

This IP address belongs to Rices Privately owned enterprise (AS48693), which manages 10 IP addresses in our monitoring system. Out of these, 111,079 have been reported for suspicious activities, resulting in a network-wide threat level of 4/10.

Network notice: This network shows some suspicious activity patterns. Monitor interactions with IPs from this ASN.

Comparative Analysis

How this IP compares to others in our threat intelligence database

92 %

Global Threat Ranking

This IP is more threatening than 92% of all IPs in our database.

Top 10% Most Dangerous

Global Comparison

Compared against 199,492 reported IPs worldwide

Threat Level 10/10 avg: 5.3 ++
Total Reports 232 avg: 23 ++

Network Comparison

Compared against 11 IPs in ASN 48693

Threat Level 10/10 network avg: 9.1 =
Total Reports 232 network avg: 1,676 --
Network Rices Privately owned enterprise has overall threat level 4/10

Geographic Comparison

Compared against 38,446 IPs in US

Threat Level 10/10 country avg: 5.9 ++
Total Reports 232 country avg: 41 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

187,140 threat incidents tracked globally • Last 24h: 19,043 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US THIS IP
    38,446 20.5%
  2. 02
    IN
    India IN
    29,023 15.5%
  3. 03
    CN
    China CN
    26,021 13.9%
  4. 04
    BR
    Brazil BR
    10,256 5.5%
  5. 05
    DE
    Germany DE
    7,142 3.8%
  6. 06
    SG
    Singapore SG
    6,476 3.5%
  7. 07
    ID
    Indonesia ID
    5,539 3%
  8. 08
    RU
    Russia RU
    4,703 2.5%
  9. 09
    PK
    Pakistan PK
    4,654 2.5%
  10. 10
    NL
    Netherlands NL
    4,356 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

IPs from the same subnet range, likely same network segment.

2 Related IPs
10/10 Avg Threat
80% Avg Confidence
2 High Threat
High-risk network: Majority of related IPs are flagged

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "185.243.98.40",
    "threat_level": 10,
    "confidence_score": 66,
    "total_reports": 232,
    "country_code": "US",
    "isp_name": "Rices Privately owned enterprise",
    "asn": "48693",
    "first_reported": "2026-02-09 14:45:27",
    "last_reported": "2026-02-13 22:02:22",
    "exported_at": "2026-06-09T09:05:49+02:00",
    "source": "https://reportedip.de/ip/185.243.98.40/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.