Report for IP: 158.101.161.27

Threat LevelCRITICAL72/1001 rule type
4 incidents on record · active attack detected · last seen 28d ago
PTR N/A
Org / ASN Oracle Cloud Infrastructure (eu-frankfurt-1)
Country 🇩🇪 Germany
City Frankfurt am Main, Hesse
Timezone Europe/Berlin

Attack Analysis

🇩🇪 Germany · Frankfurt · 31898 · Oracle Public Cloud
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (4)

Date Severity Description
3 Jul 2026 - 16:51 medium IDS: Suricata alert — ET COMPROMISED Known Compromised or Hostile Host Traffic group 5
2 Jul 2026 - 20:39 medium IDS: Suricata alert — ET COMPROMISED Known Compromised or Hostile Host Traffic group 4
2 Jul 2026 - 17:23 high IDS: Suricata alert
2 Jul 2026 - 17:23 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22