220.197.85.21

Classification: Malicious

220.197.85.21 is a malicious IP address. Reported by 2 threat sources, last seen 2026-09-02. Network: AS4837 China Unicom.

Current activity

  • Known attacker — Seen launching attacks over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Malicious Host CIArmy 2026-06-16 20:03:31 2026-09-02 20:04:11 attacker malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP UDP Emerging Threats 2026-06-17 11:28:47 2026-08-25 09:18:53 malicious-activity
ET CINS Active Threat Intelligence Poor Reputation IP TCP Emerging Threats 2026-06-17 11:28:44 2026-08-25 09:18:51 malicious-activity

Whois information

AS name
AS4837 China Unicom
Registrant
China Unicom
City
Xicheng
Postal code
100032
Country
CN — China 🇨🇳
First indexed
2026-06-16 20:03:31
Last updated
2026-09-02 20:04:11