Report for IP: 152.53.148.66

Threat LevelCRITICAL72/1001 rule type
8 incidents on record · active attack detected · persistent 14-day campaign · last seen 1d ago
PTR abuse.pend.re
Org / ASN NETCUP-KVM
Country 🇩🇪 Germany
City Nuremberg, Bavaria
Timezone Europe/Berlin

Attack Analysis

🇩🇪 Germany · Karlsruhe · 197540 · DE-NETCUP-KVM
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (8)

Date Severity Description
30 Jul 2026 - 18:35 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
28 Jul 2026 - 15:56 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
26 Jul 2026 - 23:15 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
24 Jul 2026 - 19:25 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
23 Jul 2026 - 03:27 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
20 Jul 2026 - 09:53 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
18 Jul 2026 - 18:07 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
16 Jul 2026 - 20:30 high IDS: Suricata alert — Honeypot: probe to closed SSH port 22