Report for IP: 45.90.163.37

Threat LevelCRITICAL72/1002 rule types across 2 attack categories
10 incidents · 2 rule types · active attacker + blocklisted · persistent 7-day campaign · last seen 17d ago
PTR N/A
Org / ASN Sapinet
Country 🇫🇷 France
City Paris, Île-de-France
Timezone Europe/Paris

Attack Analysis

🇫🇷 France · Paris · 39421 · Sapinet SAS
IDS: Threat Intel — CINS Active Threat
This IP appears in the CINS (Collective Intelligence Network Security) Active Threat Intelligence feed — a real-time blocklist of IPs with poor reputation scores derived from observed malicious activity. CINS-listed IPs are actively engaged in attacks at the time of detection.
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (10)

Date Severity Description
14 Jul 2026 - 20:45 medium IDS: Suricata alert — ET EXPLOIT Realtek SDK - Command Execution/Backdoor Access Inbound (CVE-2021-35394)
12 Jul 2026 - 13:01 high IDS: Threat Intel — CINS poor reputation IP — ET CINS Active Threat Intelligence Poor Reputation IP group 64
12 Jul 2026 - 06:01 high IDS: Threat Intel — CINS poor reputation IP — ET CINS Active Threat Intelligence Poor Reputation IP group 64
8 Jul 2026 - 22:43 medium IDS: Suricata alert — ET EXPLOIT Realtek SDK - Command Execution/Backdoor Access Inbound (CVE-2021-35394)
8 Jul 2026 - 21:41 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
8 Jul 2026 - 21:09 high IDS: Suricata alert
8 Jul 2026 - 21:09 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
8 Jul 2026 - 14:35 high IDS: Suricata alert — ET EXPLOIT Realtek SDK - Command Execution/Backdoor Access Inbound (CVE-2021-35394)
7 Jul 2026 - 18:35 high IDS: Threat Intel — CINS poor reputation IP — ET CINS Active Threat Intelligence Poor Reputation IP group 62
7 Jul 2026 - 18:35 high IDS: Threat Intel — CINS poor reputation IP