Report for IP: 148.66.133.188

Threat LevelHIGH50/1001 rule type
3 incidents on record Β· persistent 24-day campaign Β· last seen 3d ago
PTR 188.133.66.148.host.secureserver.net
Org / ASN Godaddy.com
Country πŸ‡ΈπŸ‡¬ Singapore
City Singapore, North West
Timezone Asia/Singapore

Attack Analysis

IDS: Database Port Scan
Suricata detected this IP scanning database ports (MySQL, PostgreSQL, Redis, MongoDB). This is reconnaissance to find exposed database services for direct exploitation or credential brute-force. Database ports should never be reachable from the internet.

Reports (3)

Date Severity Description
27 Sep 2026 - 03:50 high IDS: Database port scan β€” ET SCAN Suspicious inbound to MSSQL port 1433
12 Sep 2026 - 17:02 high IDS: Database port scan β€” ET SCAN Suspicious inbound to MSSQL port 1433
3 Sep 2026 - 00:48 high IDS: Database port scan β€” ET SCAN Suspicious inbound to MSSQL port 1433