Report for IP: 20.228.179.34

Threat LevelCRITICAL74/1001 rule type
9 incidents on record Β· active attack detected Β· persistent 16-day campaign Β· seen 11h ago
PTR N/A
Org / ASN Microsoft Azure Cloud (eastus)
Country πŸ‡ΊπŸ‡Έ United States
City Boydton, Virginia
Timezone America/New_York

Attack Analysis

πŸ‡ΊπŸ‡Έ United States Β· Washington Β· 8075 Β· Microsoft Corporation
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour β€” including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (9)

Date Severity Description
31 Jul 2026 - 13:02 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
29 Jul 2026 - 09:49 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 08:56 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 06:52 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 04:44 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 02:37 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
16 Jul 2026 - 00:38 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
15 Jul 2026 - 22:36 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
15 Jul 2026 - 20:29 high IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22