Report for IP: 212.23.201.50

Threat LevelCRITICAL72/1001 rule type
5 incidents on record · active attack detected · active over 4 days · last seen 13d ago
PTR rdns.aftab.host
Org / ASN Vandad Vira Hooman LLC
Country 🇩🇪 Germany
City Frankfurt am Main, Hesse
Timezone Europe/Berlin

Attack Analysis

🇮🇷 Iran · Tehran · 60631 · Vandad Vira Hooman LLC
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (5)

Date Severity Description
19 Jul 2026 - 10:42 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
16 Jul 2026 - 07:48 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
16 Jul 2026 - 04:43 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
16 Jul 2026 - 01:18 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
15 Jul 2026 - 22:10 high IDS: Suricata alert — Honeypot: probe to closed SSH port 22