Check an IP Address, Domain Name, Subnet, or ASN
184.174.33.105 has a threat confidence score of 96%. This IP address from France (AS51167, Contabo GmbH) has been observed in 101 honeypot sessions targeting SSH protocols. First observed on March 19, 2026, most recently active March 19, 2026.
Post-access host reconnaissance performed over SSH to evaluate system capabilities and confirm shell privilege context. The activity fingerprints the operating system and kernel, determines CPU architecture and core count, checks for GPU presence, enumerates interactive users, extracts network routing information, validates the hosting organization via external IP lookup, and confirms the current execution identity. This pattern is commonly observed after initial access when attackers assess whether the compromised host is suitable for compute-intensive workloads, lateral movement, or payload deployment.