Check an IP Address, Domain Name, Subnet, or ASN
2a06:4883:b000::c2 has a threat confidence score of 50%. This IP address from United Kingdom (AS211298, Driftnet Ltd) has been observed in 134 honeypot sessions targeting MSSQL, HTTPS, POSTGRES, SIP, HTTP and 6 other protocols. First observed on January 21, 2026, most recently active April 28, 2026.
Identifies HTTP requests targeting the web server root path ("/"), typically used for initial service discovery, host validation, or baseline content inspection prior to deeper enumeration.
Client performs a modern MongoDB handshake using the hello command followed by a buildinfo request to gather server capabilities and version details. This sequence is commonly associated with automated fingerprinting or discovery activity against exposed MongoDB instances rather than normal application queries.