Report for IP: 152.53.42.70

Threat LevelCRITICAL72/1001 rule type
14 incidents ยท active attack detected ยท persistent 7-day campaign ยท last seen 16d ago
PTR h28.mein-webdienst.de
Org / ASN Netcup KVM
Country ๐Ÿ‡ฉ๐Ÿ‡ช Germany
City Nuremberg, Bavaria
Timezone Europe/Berlin

Attack Analysis

๐Ÿ‡ฉ๐Ÿ‡ช Germany ยท Nuremberg ยท 197540 ยท DE-NETCUP-KVM
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour โ€” including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (14)

Date Severity Description
16 Jul 2026 - 07:32 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 05:19 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 03:07 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 00:58 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
15 Jul 2026 - 22:46 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
15 Jul 2026 - 20:27 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 09:32 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 06:54 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 05:11 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 03:29 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 01:48 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 00:09 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
13 Jul 2026 - 22:32 medium IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22
9 Jul 2026 - 15:53 high IDS: Suricata alert โ€” Honeypot: probe to closed SSH port 22