Loading threats
FTP session where an empty control-channel command is observed in conjunction with non-printable binary data on the control channel. This pattern reflects malformed or non-FTP-compliant input, commonly seen during TLS handshake attempts on plaintext endpoints, protocol confusion, or automated scanner misfires.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 94.102.49.155 | 100% | 14,990 | 10,988 | 🇳🇱 NL | AS202425 | 2026-04-17 |
| 95.215.0.144 | 100% | 13,428 | 10,274 | 🇷🇺 RU | AS44050 | 2026-04-17 |
| 80.82.77.202 | 98% | 7,295 | 6,057 | 🇳🇱 NL | AS202425 | 2026-04-17 |
| 35.216.144.195 | 100% | 5,421 | 2,534 | 🇨🇭 CH | AS15169 | 2026-04-06 |
| 92.154.95.236 | 100% | 5,371 | 3,723 | 🇫🇷 FR | AS3215 | 2026-04-17 |
| 35.216.195.77 | 100% | 5,139 | 2,038 | 🇨🇭 CH | AS15169 | 2026-04-11 |
| 5.101.64.6 | 100% | 4,552 | 4,275 | 🇷🇺 RU | AS34665 | 2026-04-17 |
| 167.94.146.57 | 50% | 3,878 | 2,870 | 🇺🇸 US | AS398705 | 2026-04-17 |
| 86.54.31.38 | 100% | 3,579 | 2,376 | 🇨🇦 CA | AS12989 | 2026-04-17 |
| 162.142.125.117 | 50% | 3,277 | 2,092 | 🇺🇸 US | AS398324 | 2026-03-22 |
| 162.142.125.122 | 50% | 3,168 | 1,934 | 🇺🇸 US | AS398324 | 2026-03-22 |
| 35.216.172.131 | 100% | 3,165 | 1,234 | 🇨🇭 CH | AS15169 | 2026-04-10 |
| 162.142.125.120 | 50% | 3,163 | 2,095 | 🇺🇸 US | AS398324 | 2026-03-22 |
| 152.32.135.214 | 98% | 3,037 | 424 | 🇭🇰 HK | AS135377 | 2026-04-14 |
| 31.14.32.5 | 99% | 2,811 | 2,048 | 🇳🇱 NL | AS201401 | 2026-04-15 |
| 31.14.32.6 | 99% | 2,808 | 1,966 | 🇳🇱 NL | AS201401 | 2026-04-16 |
| 35.216.201.9 | 100% | 2,692 | 1,257 | 🇨🇭 CH | AS15169 | 2026-04-13 |
| 167.94.138.183 | 50% | 2,661 | 1,730 | 🇺🇸 US | AS398324 | 2026-03-22 |
| 35.216.140.3 | 100% | 2,606 | 1,424 | 🇨🇭 CH | AS15169 | 2026-04-12 |
| 167.94.138.189 | 50% | 2,550 | 1,644 | 🇺🇸 US | AS398324 | 2026-03-22 |