Report for IP: 159.65.148.75

Threat LevelMEDIUM45/1001 rule type
4 incidents on record · persistent 43-day campaign · last seen 7d ago
PTR N/A
Org / ASN DigitalOcean, LLC
Country 🇮🇳 India
City Bengaluru, Karnataka
Timezone Asia/Kolkata

Attack Analysis

🇮🇳 India · Bengaluru · 14061 · Digitalocean, LLC
IDS: Database Port Scan
Suricata detected this IP scanning database ports (MySQL, PostgreSQL, Redis, MongoDB). This is reconnaissance to find exposed database services for direct exploitation or credential brute-force. Database ports should never be reachable from the internet.

Reports (4)

Date Severity Description
25 Jul 2026 - 03:05 high IDS: Database port scan — ET SCAN Suspicious inbound to PostgreSQL port 5432
14 Jul 2026 - 01:30 high IDS: Database port scan — ET SCAN Suspicious inbound to PostgreSQL port 5432
3 Jul 2026 - 19:16 high IDS: Database port scan — ET SCAN Suspicious inbound to PostgreSQL port 5432
11 Jun 2026 - 22:33 high IDS: Database port scan — ET SCAN Suspicious inbound to PostgreSQL port 5432