Threat LevelMEDIUM45/1001 rule type
1 incident on record · last seen 62d ago · known internet scanner
| PTR | census8.shodan.io |
| Org / ASN | AS43641 SOLLUTIUM EU Sp z.o.o. |
| Country | 🇳🇱 The Netherlands |
| City | Haarlem, North Holland |
| Timezone | Europe/Amsterdam |
Internet ScannerShodan
Shodan — commercial internet-wide scanner that continuously maps open ports and services on all public IP addresses. Data is sold for threat intelligence purposes. All unsolicited scanning probes are treated as hostile traffic on this network regardless of stated purpose.
Attack Analysis
IDS: Database Port Scan
Suricata detected this IP scanning database ports (MySQL, PostgreSQL, Redis, MongoDB). This is reconnaissance to find exposed database services for direct exploitation or credential brute-force. Database ports should never be reachable from the internet.
Reports (1)
| Date | Severity | Description |
|---|---|---|
| 29 Jul 2026 - 19:25 | high | IDS: Database port scan |
EagleEye Intelligence