Check an IP Address, Domain Name, Subnet, or ASN
165.154.11.48 has a threat confidence score of 59%. This IP address from Nigeria (AS135377, UCLOUD INFORMATION TECHNOLOGY HK LIMITED) has been observed in 87 honeypot sessions targeting SIP, HTTPS, HTTP, RDP, IMAP and 3 other protocols. First observed on February 2, 2026, most recently active March 25, 2026.
Identifies HTTP GET requests directly targeting the /bad-request path, indicating automated or manual probing of application error-handling routes rather than legitimate navigation flow.
Identifies HTTP requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration.
Identifies HTTPS requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration