Report for IP: 124.158.124.67

Threat LevelCRITICAL72/1001 rule type
10 incidents · active attack detected · active over 5 days · last seen 18d ago
PTR N/A
Org / ASN STXCitinet LLC
Country 🇲🇳 Mongolia
City Ulan Bator, Ulaanbaatar
Timezone Asia/Ulaanbaatar

Attack Analysis

🇲🇳 Mongolia · Ulaanbaatar · 38805 · Stxcitinet LLC
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (10)

Date Severity Description
14 Jul 2026 - 09:46 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
14 Jul 2026 - 07:44 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
14 Jul 2026 - 05:58 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
14 Jul 2026 - 04:14 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
14 Jul 2026 - 02:30 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
14 Jul 2026 - 00:47 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
13 Jul 2026 - 23:06 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
13 Jul 2026 - 21:17 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
12 Jul 2026 - 13:40 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
9 Jul 2026 - 17:13 high IDS: Suricata alert — Honeypot: probe to closed SSH port 22