Report for IP: 195.96.139.25

Threat LevelHIGH60/1001 rule type
1 incident on record · active attack detected · last seen 28d ago · known internet scanner
PTR r5-25-19.monitoring.internet-measurement.com
Org / ASN AS211298 Driftnet Ltd
Country 🇮🇷 Iran
City Tehran, Tehran
Timezone Asia/Tehran
Internet ScannerInternet-measurement
Internet measurement research scanner performing systematic surveys of internet-facing services. All unsolicited scanning probes are treated as hostile traffic on this network regardless of stated purpose.

Attack Analysis

Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (1)

Date Severity Description
1 Sep 2026 - 14:55 high IDS: Suricata alert — GPL RPC portmap listing UDP 111