Loading threats
FTP session where the client authenticates and performs repeated passive-mode directory listings while navigating directly into finance, HR, partner, vendor, and release paths such as /data/finance, /data/hr, /partners, and /pub/*, indicating targeted discovery of business-sensitive storage locations.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 152.32.131.245 | 94% | 1,476 | 431 | 🇭🇰 HK | AS135377 | 2026-03-02 |
| 165.154.49.137 | 89% | 1,464 | 351 | 🇮🇩 ID | AS135377 | 2026-03-01 |
| 118.193.65.209 | 90% | 1,330 | 341 | 🇬🇧 GB | AS135377 | 2026-02-22 |
| 152.32.243.98 | 93% | 1,247 | 301 | 🇰🇷 KR | AS135377 | 2026-03-02 |
| 128.14.225.253 | 92% | 1,130 | 342 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 101.36.114.252 | 96% | 1,080 | 450 | 🇰🇷 KR | AS135377 | 2026-03-02 |
| 101.36.121.22 | 96% | 1,074 | 298 | 🇭🇰 HK | AS135377 | 2026-03-02 |
| 123.58.209.112 | 94% | 1,069 | 383 | 🇭🇰 HK | AS135377 | 2026-03-03 |
| 165.154.10.165 | 93% | 1,054 | 370 | 🇳🇬 NG | AS135377 | 2026-03-02 |
| 152.32.162.142 | 94% | 981 | 302 | 🇻🇳 VN | AS135377 | 2026-03-03 |
| 152.32.151.39 | 96% | 902 | 250 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 118.193.61.179 | 93% | 885 | 343 | 🇯🇵 JP | AS135377 | 2026-03-02 |
| 165.154.179.62 | 94% | 852 | 351 | 🇷🇺 RU | AS135377 | 2026-03-02 |
| 101.36.105.50 | 95% | 763 | 264 | 🇯🇵 JP | AS135377 | 2026-03-02 |
| 165.154.162.193 | 94% | 762 | 337 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 128.14.236.41 | 95% | 757 | 375 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 152.32.207.42 | 91% | 747 | 250 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 128.14.236.224 | 95% | 737 | 316 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 152.32.208.73 | 92% | 730 | 312 | 🇺🇸 US | AS135377 | 2026-03-02 |
| 150.107.38.5 | 94% | 728 | 306 | 🇭🇰 HK | AS135377 | 2026-03-02 |