Report for IP: 5.2.76.203

Threat LevelCRITICAL72/1001 rule type
4 incidents on record · active attack detected · persistent 14-day campaign · seen 3h ago
PTR N/A
Org / ASN TIG
Country 🇳🇱 The Netherlands
City Amsterdam, North Holland
Timezone Europe/Amsterdam

Attack Analysis

🇳🇱 Netherlands · Amsterdam · 60404 · TIG
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (4)

Date Severity Description
31 Jul 2026 - 23:47 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
24 Jul 2026 - 04:57 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
18 Jul 2026 - 17:47 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
17 Jul 2026 - 23:59 high IDS: Suricata alert — Honeypot: probe to closed SSH port 22