Check an IP Address, Domain Name, Subnet, or ASN
165.154.12.139 has a high threat confidence level of 79%, originating from Dubai, United Arab Emirates, on the UCLOUD INFORMATION TECHNOLOGY HK LIMITED network (135377). It has been observed across 139 sessions targeting SMTP, RTSP, IMAP, MYSQL, SSH and 1 other protocols, First observed on January 30, 2026, most recently active March 1, 2026.
Automated reconnaissance behavior that performs a basic enumeration of accessible MySQL databases to identify available schemas and infer hosted applications or data presence. Often used as an initial validation step to confirm database access and assess whether further enumeration or extraction is worthwhile.
Identifies HTTP requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration.