Report for IP: 59.22.201.143

Threat LevelCRITICAL72/1001 rule type
2 incidents on record · active attack detected · active over 5 days · seen 7h ago
PTR N/A
Org / ASN Kornet
Country 🇰🇷 South Korea
City Changwon, Gyeongsangnam-do
Timezone Asia/Seoul

Attack Analysis

🇰🇷 Republic of Korea · Busan · 4766 · Kornet
Suricata IDS Alert
Suricata intrusion detection flagged this IP for malicious network behaviour — including port scanning, exploit attempts, botnet activity, or known attack signatures. The specific signature is shown in the report list below.

Reports (2)

Date Severity Description
13 Jun 2026 - 13:33 medium IDS: Suricata alert — Honeypot: probe to closed SSH port 22
8 Jun 2026 - 06:15 medium IDS: Suricata alert — ET COMPROMISED Known Compromised or Hostile Host Traffic group 17