Loading threats
SMTP client issued the DATA command to begin transmitting the email message content, including headers and body, after sender and recipient addresses have been accepted. This marks the transition from transaction setup to actual message delivery. In honeypot environments, automated spam bots and relay probes often use DATA to verify whether the server allows unauthenticated message submission or open relay behavior.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 154.83.15.73 | 97% | 114,863 | 1,091 | 🇭🇰 HK | AS142403 | 2026-02-05 |
| 109.122.18.73 | 99% | 111,472 | 1,059 | 🇺🇸 US | AS22439 | 2026-02-06 |
| 194.26.192.102 | 91% | 54,308 | 11,426 | 🇳🇱 NL | AS210558 | 2026-03-02 |
| 155.117.232.31 | 88% | 5,087 | 3,163 | 🇺🇸 US | AS399486 | 2026-02-24 |
| 185.93.89.18 | 95% | 3,078 | 3,067 | 🇮🇷 IR | AS213790 | 2026-02-26 |
| 34.90.49.42 | 97% | 2,812 | 347 | 🇳🇱 NL | AS396982 | 2026-02-04 |
| 172.94.9.71 | 96% | 1,628 | 1,534 | 🇮🇷 IR | AS213790 | 2026-02-17 |
| 34.91.133.190 | 95% | 1,452 | 185 | 🇳🇱 NL | AS396982 | 2026-01-31 |
| 77.83.39.90 | 88% | 1,121 | 375 | 🇺🇦 UA | AS214940 | 2026-02-22 |
| 34.12.37.225 | 95% | 1,120 | 144 | 🇳🇱 NL | AS396982 | 2026-02-05 |
| 102.36.228.187 | 76% | 1,010 | 169 | 🇳🇬 NG | AS328555 | 2026-03-02 |
| 220.80.223.144 | 100% | 987 | 552 | 🇰🇷 KR | AS4766 | 2026-03-02 |
| 82.25.175.72 | 88% | 941 | 290 | 🇬🇧 GB | AS399486 | 2026-02-11 |
| 45.144.212.199 | 81% | 830 | 227 | 🇺🇦 UA | AS214940 | 2026-03-02 |
| 158.94.211.108 | 97% | 819 | 89 | 🇺🇸 US | AS202412 | 2026-02-24 |
| 195.250.31.127 | 84% | 812 | 123 | 🇮🇳 IN | AS199404 | 2026-02-21 |
| 158.94.211.67 | 98% | 749 | 109 | 🇺🇸 US | AS202412 | 2026-03-02 |
| 45.142.193.146 | 92% | 627 | 99 | 🇷🇴 RO | AS214295 | 2026-02-05 |
| 78.153.140.207 | 75% | 563 | 119 | 🇬🇧 GB | AS202306 | 2026-02-04 |
| 158.94.209.145 | 98% | 561 | 87 | 🇳🇱 NL | AS202412 | 2026-03-02 |