Report for IP: 20.84.101.167

Threat LevelCRITICAL72/1001 rule type
11 incidents Β· active attack detected Β· persistent 12-day campaign Β· last seen 3d ago
PTR N/A
Org / ASN Microsoft Azure Cloud (eastus)
Country πŸ‡ΊπŸ‡Έ United States
City Boydton, Virginia
Timezone America/New_York

Attack Analysis

πŸ‡ΊπŸ‡Έ United States Β· Washington Β· 8075 Β· Microsoft Corporation
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour β€” including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (11)

Date Severity Description
29 Jul 2026 - 00:06 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
27 Jul 2026 - 14:13 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
27 Jul 2026 - 14:12 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
25 Jul 2026 - 09:50 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
23 Jul 2026 - 20:05 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
22 Jul 2026 - 23:34 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
22 Jul 2026 - 05:01 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
21 Jul 2026 - 09:00 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
19 Jul 2026 - 20:28 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
18 Jul 2026 - 23:40 medium IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22
17 Jul 2026 - 06:00 high IDS: Suricata alert β€” Honeypot: probe to closed SSH port 22