Report for IP: 20.83.45.155

Threat LevelCRITICAL72/1002 rule types across 2 attack categories
3 incidents on record Β· 2 rule types Β· confirmed on global blocklist Β· last seen 27d ago
PTR N/A
Org / ASN Microsoft Azure Cloud (centralus)
Country πŸ‡ΊπŸ‡Έ United States
City Des Moines, Iowa
Timezone America/Chicago

Attack Analysis

IDS: Threat Intel β€” CINS Active Threat
This IP appears in the CINS (Collective Intelligence Network Security) Active Threat Intelligence feed β€” a real-time blocklist of IPs with poor reputation scores derived from observed malicious activity. CINS-listed IPs are actively engaged in attacks at the time of detection.
Port 22 Honeypot Probe
This IP connected to a fake SSH honeypot β€” a port 22 listener that is not a real SSH server. This is an automated scanner fingerprinting targets before launching a brute-force campaign. Legitimate systems never probe port 22 without a specific reason; this activity is virtually 100% malicious.

Reports (3)

Date Severity Description
2 Sep 2026 - 15:06 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
2 Sep 2026 - 15:06 high IDS: Threat Intel β€” CINS poor reputation IP β€” ET CINS Active Threat Intelligence Poor Reputation IP group 30
2 Sep 2026 - 15:06 high IDS: Threat Intel β€” CINS poor reputation IP