Port report
Port 8449
HoneyLabs honeypots recorded 1,745 probes against destination port 8449 from 35 distinct source IP addresses in the last 7 days. The largest source network was Bucklog SARL (AS211590). Most probes came from France. First seen 2026-07-29, most recent 2026-08-05 10:06.
1,745
Events 7d
35
Source IPs
11
Source ASNs
10
Countries
Top source ASNs
Top source countries
Top source IPs hitting port 8449
- 185.177.72.221,694 eventsObserved FR路 AS211590 Bucklog SARLseen Aug 4
- 194.180.49.1045 eventsObserved BG路 AS201814 MEVSPACE sp. z o.o.seen Aug 4
- 185.136.15.45 eventsObserved KZ路 AS205997 Vlad Cojuhariseen Aug 5
- 183.81.168.1864 eventsObserved US路 AS206264 Amarutu Technology Ltdseen Aug 5
- 185.136.15.23 eventsObserved KZ路 AS205997 Vlad Cojuhariseen Aug 5
- 178.128.243.2133 eventsObserved NL路 AS14061 DigitalOcean, LLCseen Aug 5
- 143.198.23.1002 eventsObserved US路 AS14061 DigitalOcean, LLCseen Aug 2
- 141.98.83.1112 eventsObserved PA路 AS209588 Flyservers S.A.seen Aug 1
- 162.216.149.1471 eventObserved USseen Jul 31
- 85.217.140.41 eventRecognized scanner FRseen Aug 3
- 162.216.149.1171 eventObserved USseen Aug 1
- 35.203.210.1141 eventObserved GBseen Jul 30
- 162.216.149.481 eventObserved USseen Aug 2
- 45.82.78.1051 eventObserved DE路 AS212512 Detai Prosperous Technologies Limitedseen Jul 30
- 162.216.149.721 eventObserved USseen Aug 4
- 162.216.150.1391 eventObserved USseen Aug 2
- 147.185.133.1841 eventObserved US路 AS396982 Google LLCseen Jul 30
- 35.203.210.331 eventObserved GBseen Aug 4
- 147.185.133.1691 eventObserved US路 AS396982 Google LLCseen Aug 2
- 85.217.149.381 eventRecognized scanner CAseen Aug 3
- 147.185.132.1421 eventObserved US路 AS396982 Google LLCseen Aug 2
- 147.185.133.711 eventObserved US路 AS396982 Google LLCseen Aug 2
- 193.47.62.1671 eventObserved BG路 AS216014 BestDC Limitedseen Aug 2
- 45.82.78.1001 eventObserved DE路 AS212512 Detai Prosperous Technologies Limitedseen Aug 4
- 68.183.36.2521 eventObserved GB路 AS14061 DigitalOcean, LLCseen Jul 30
Top user-agents on port 8449
- curl/8.7.11,680
- Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity19
- Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.3614
- Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.369
- Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:146.0) Gecko/20100101 Firefox/146.04
- Mozilla/5.0 zgrab/0.x3
- Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.361
- Mozilla/5.0 (compatible; SecurityResearch/1.0; )1
- Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.361
JSON: /api/port/8449. CSV: /api/port/8449?format=csv.