IP address


.002185.215.161.11
Shodan(more info)
Passive DNS
Tags:
IP blacklists
CI Army
185.215.161.11 is listed on the CI Army blacklist.

Description: Collective Intelligence Network Security is a Threat Intelligence<br>database that provides scores for IPs. Source of unspecified malicious attacks<br>most of them will be active attackers/scanners
Type of feed: primary (feed detail page)

Last checked at: 2025-10-30 03:50:01.045000
Was present on blacklist at: 2025-10-28 03:50, 2025-10-29 03:50, 2025-10-30 03:50
Warden events (2)
2025-10-28
ReconScanning (node.9c1411): 1
2025-10-27
ReconScanning (node.9c1411): 1
DShield reports (IP summary, reports)
2025-10-27
Number of reports: 27
Distinct targets: 23
2025-10-28
Number of reports: 12
Distinct targets: 7
Origin AS
AS205516 - NLS-ASTANA
BGP Prefix
185.215.161.0/24
geo
Kazakhstan, Astana
🕑 Asia/Almaty
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
185.215.160.0 - 185.215.163.255
last_activity
2025-10-28 02:23:44
last_warden_event
2025-10-28 02:23:44
rep
0.0023809523809523807
reserved_range
0
Shodan's InternetDB
Open ports: 22, 80, 443, 1723, 2053, 8443
Tags: self-signed, vpn
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:9.6p1
ts_added
2025-10-27 14:55:59.416000
ts_last_update
2025-11-10 14:56:00.345000

Warden event timeline

DShield event timeline

Presence on blacklists