IP address


.00085.11.161.198
Shodan(more info)
Passive DNS
Tags:

Threat categories

TLRoleCategoryDetails
No threat category tags assigned

OTX pulses
[69f1de85544538ce8b03332a] 2026-04-29 10:33:41.967000 | User interaction with a ClickFix-style phishing site resulted in execution of an obfuscated PowerShell command
Author name:AlienVault
Pulse modified:2026-04-29 10:44:36.742000
Indicator created:2026-04-29 10:33:42
Indicator role:None
Indicator title:
Indicator expiration:2026-05-29 10:00:00
Origin AS
AS207043 - DEDIK-IO
BGP Prefix
85.11.161.0/24
geo
Hong Kong, Hong Kong
🕑 Asia/Hong_Kong
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
85.11.128.0 - 85.11.191.255
last_activity
2026-04-29 13:08:33.826000
rep
0.0
reserved_range
0
Shodan's InternetDB
Open ports: 2096, 9191
Tags:
CPEs: cpe:/a:python:python:3.10.0
ts_added
2026-04-29 13:08:33.835000
ts_last_update
2026-06-20 13:08:40.289000

Warden event timeline

DShield event timeline

OTX pulses