Check an IP Address, Domain Name, Subnet, or ASN
103.91.190.221 has a threat confidence score of 80%. This IP address from Thailand (AS136523, COLODEE DIGITAL NETWORK CO.,LTD.) has been observed in 16 honeypot sessions targeting POSTGRES protocols. First observed on March 13, 2026, most recently active March 14, 2026.
Identifies a PostgreSQL reconnaissance sequence where an actor first issues a comment-based parser probe, then interacts using a deterministic statement-cache prepared statement identifier, followed by enumeration of the current database encoding and locale settings via pg_catalog.pg_database. This pattern reflects automated client or adversarial tooling performing environment fingerprinting to assess query parsing behavior, driver compatibility, and database configuration prior to further interaction or exploitation attempts.