Check an IP Address, Domain Name, Subnet, or ASN
216.180.246.37 has a threat confidence score of 64%. This IP address from United States (AS396982, Google LLC) has been observed in 98 honeypot sessions targeting HTTPS, HTTP, MSSQL, IMAP, MONGODB and 2 other protocols. First observed on January 23, 2026, most recently active March 23, 2026.
Identifies HTTP requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration.
Identifies HTTP GET requests directly targeting the /bad-request path, indicating automated or manual probing of application error-handling routes rather than legitimate navigation flow.
FTP session where the client issues AUTH TLS to upgrade the connection to Transport Layer Security. This reflects protocol-level encryption negotiation prior to further interaction.