Threat LevelCRITICAL72/1002 rule types across 2 attack categories
5 incidents on record ยท 2 rule types ยท active attacker + blocklisted ยท last seen 40d ago
| PTR | N/A |
| Org / ASN | Lanedonet Datacenter |
| Country | ๐ณ๐ฑ The Netherlands |
| City | Amsterdam, North Holland |
| Timezone | Europe/Amsterdam |
Attack Analysis
IDS: Blocklist โ Spamhaus DROP
This IP is on the Spamhaus DROP list โ a dataset of netblocks hijacked or leased by professional spam and cybercrime operations with no legitimate users. Traffic from DROP-listed ranges is considered hostile by design. Blocking is unconditional.
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour โ including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.
Reports (5)
| Date | Severity | Description |
|---|---|---|
| 20 Aug 2026 - 16:29 | high | IDS: Suricata alert |
| 20 Aug 2026 - 14:34 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 10 |
| 20 Aug 2026 - 13:26 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 10 |
| 19 Aug 2026 - 20:08 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 10 |
| 19 Aug 2026 - 15:08 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 10 |
EagleEye Intelligence