Threat LevelCRITICAL72/1003 rule types across 3 attack categories
3 incidents on record · 3 rule types · active attack detected · persistent 87-day campaign · last seen 3d ago
| PTR | N/A |
| Org / ASN | ColocaTel Inc |
| Country | 🇳🇱 The Netherlands |
| City | Amsterdam, North Holland |
| Timezone | Europe/Amsterdam |
Attack Analysis
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.
Geo-Blocked Country
This IP was blocked purely based on its country of origin — the site owner has restricted access from this IP's geographic location due to a pattern of unwanted traffic from that region. This does not necessarily mean the specific IP itself has attacked anything; it reflects a blanket country-level policy.
Git Repository Exposure Probe
This IP requested the /.git/ directory, attempting to download source code, commit history, database credentials, and API keys from an accidentally exposed Git repository. Automated tools can reconstruct an entire codebase from an exposed .git folder. No legitimate client ever requests this path.
Reports (3)
| Date | Severity | Description |
|---|---|---|
| 27 Sep 2026 - 03:42 | high | Web: Git repo exposure probe |
| 27 Sep 2026 - 03:32 | low | Geo Blocker — Country Match |
| 2 Jul 2026 - 14:47 | high | IDS: Suricata alert |
EagleEye Intelligence