Check an IP Address, Domain Name, Subnet, or ASN
164.92.234.216 has a very high threat confidence level of 100%, originating from Frankfurt am Main, Germany, on the DigitalOcean, LLC network (14061). It has been observed across 2,036 sessions targeting SSH, with detected attack patterns including dual source gpu validation with host context, First observed on March 4, 2026, most recently active March 5, 2026.
Combined execution of lspci (VGA and 3D controller extraction and device count) and nvidia-smi -q (product name extraction and non-empty count validation), together with kernel/architecture (uname -s -v -n -r -m) and uptime collection. This pattern reflects cross-validation of GPU presence using both PCI-level and NVIDIA driver-level queries, enriched with host system context.
Identifies SSH sessions where the actor performs structured hardware reconnaissance including CPU core enumeration, GPU detection via nvidia-smi, VGA/3D controller inspection via lspci, system uptime queries, and kernel/architecture fingerprinting to assess computational capabilities of the compromised host.