Threat LevelHIGH60/1002 rule types across 2 attack categories
2 incidents on record · 2 rule types · active attack detected · last seen 16d ago · known internet scanner
| PTR | azpdescp0dsq.stretchoid.com |
| Org / ASN | Microsoft Azure Cloud (eastus) |
| Country | 🇺🇸 United States |
| City | Boydton, Virginia |
| Timezone | America/New_York |
Internet ScannerStretchoid
Stretchoid — internet-wide scanning project. All unsolicited scanning probes are treated as hostile traffic on this network regardless of stated purpose.
Attack Analysis
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.
IDS: Database Port Scan
Suricata detected this IP scanning database ports (MySQL, PostgreSQL, Redis, MongoDB). This is reconnaissance to find exposed database services for direct exploitation or credential brute-force. Database ports should never be reachable from the internet.
Reports (2)
| Date | Severity | Description |
|---|---|---|
| 13 Sep 2026 - 15:47 | high | IDS: Database port scan — ET SCAN Suspicious inbound to Oracle SQL port 1521 |
| 12 Sep 2026 - 13:46 | high | IDS: Suricata alert — GPL RPC portmap listing UDP 111 |
EagleEye Intelligence