Check an IP Address, Domain Name, Subnet, or ASN
139.59.181.152 has a threat confidence score of 83%. This IP address from United Kingdom (AS14061, DigitalOcean, LLC) has been observed in 279 honeypot sessions targeting HTTP, HTTPS, IMAP, SIP, FTP and 7 other protocols. First observed on February 14, 2026, most recently active March 16, 2026.
FTP session where the client issues a FEAT command to request the server’s supported feature list. This behavior reflects capability enumeration used to fingerprint server extensions, supported commands, and implementation characteristics prior to further interaction.
Identifies HTTP requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration.