Check an IP Address, Domain Name, Subnet, or ASN
123.139.42.23 has a threat confidence score of 45%. This IP address from China (AS4837, CHINA UNICOM China169 Backbone) has been observed in 7 honeypot sessions targeting FTP, REDIS, HTTPS, HTTP, IMAP protocols. First observed on January 24, 2026, most recently active March 27, 2026.
FTP session where an empty control-channel command is observed in conjunction with non-printable binary data on the control channel. This pattern reflects malformed or non-FTP-compliant input, commonly seen during TLS handshake attempts on plaintext endpoints, protocol confusion, or automated scanner misfires.
Identifies HTTP requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration.