Report for IP: 162.241.132.172

Threat LevelCRITICAL76/1001 rule type
28 incidents Β· active attack detected Β· persistent 22-day campaign Β· seen 13h ago
PTR server.ikw.umd.mybluehost.me
Org / ASN Unified Layer
Country πŸ‡ΊπŸ‡Έ United States
City Provo, Utah
Timezone America/Denver

Attack Analysis

πŸ‡ΊπŸ‡Έ United States Β· Provo Β· 19871 Β· Unified Layer
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour β€” including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (28)

Date Severity Description
14 Jul 2026 - 03:52 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 02:30 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
14 Jul 2026 - 01:09 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
13 Jul 2026 - 23:49 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
13 Jul 2026 - 22:32 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
13 Jul 2026 - 21:15 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
12 Jul 2026 - 13:39 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
9 Jul 2026 - 14:46 high IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22