Report for IP: 195.96.139.28

Threat LevelHIGH60/1001 rule type
1 incident on record · active attack detected · last seen 38d ago · known internet scanner
PTR r5-28-1c.monitoring.internet-measurement.com
Org / ASN AS211298 Driftnet Ltd
Country 🇮🇷 Iran
City Tehran, Tehran
Timezone Asia/Tehran
Internet ScannerInternet-measurement
Internet measurement research scanner performing systematic surveys of internet-facing services. All unsolicited scanning probes are treated as hostile traffic on this network regardless of stated purpose.

Attack Analysis

🇬🇧 United Kingdom · London · 211298 · Driftnet LTD
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (1)

Date Severity Description
24 Jun 2026 - 07:32 high IDS: Suricata alert — GPL DNS named version attempt