Report for IP: 124.160.173.22

Threat LevelCRITICAL72/1001 rule type
5 incidents on record · active attack detected · persistent 16-day campaign · last seen 17d ago
PTR N/A
Org / ASN AS4837 CHINA UNICOM China169 Backbone
Country 🇨🇳 China
City Hangzhou, Zhejiang
Timezone Asia/Shanghai

Attack Analysis

🇨🇳 China · Hangzhou · 4837 · China Unicom Zhejiang Province Network
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (5)

Date Severity Description
14 Jul 2026 - 20:10 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
8 Jul 2026 - 13:36 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
8 Jul 2026 - 05:55 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
28 Jun 2026 - 22:14 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
28 Jun 2026 - 22:13 high IDS: Suricata alert — Honeypot: probe to closed SSH port 22