Threat LevelCRITICAL74/1001 rule type
45 incidents ยท confirmed on global blocklist ยท persistent 21-day campaign ยท seen 7h ago
| PTR | 45.154.98.128.powered.by.rdp.sh |
| Org / ASN | 1337 Services GmbH |
| Country | ๐ณ๐ฑ The Netherlands |
| City | Lelystad, Flevoland |
| Timezone | Europe/Amsterdam |
Attack Analysis
IDS: Blocklist โ Spamhaus DROP
This IP is on the Spamhaus DROP list โ a dataset of netblocks hijacked or leased by professional spam and cybercrime operations with no legitimate users. Traffic from DROP-listed ranges is considered hostile by design. Blocking is unconditional.
Reports (45)
| Date | Severity | Description |
|---|---|---|
| 16 Jul 2026 - 18:45 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 7 |
| 16 Jul 2026 - 02:14 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 7 |
| 14 Jul 2026 - 15:19 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 7 |
| 12 Jul 2026 - 00:33 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 7 |
| 10 Jul 2026 - 14:51 | high | IDS: Blocklist โ Spamhaus DROP listed IP โ ET DROP Spamhaus DROP Listed Traffic Inbound group 7 |
EagleEye Intelligence