Check an IP Address, Domain Name, Subnet, or ASN
45.228.8.33 has a threat confidence score of 100%. This IP address from Brazil (AS267062, W-NET TELLECOM EIRELI ME) has been observed in 692 honeypot sessions targeting SSH, HTTPS protocols. Detected attack patterns include ssh comprehensive host reconnaissance sequence. First observed on April 11, 2026, most recently active April 25, 2026.
Identifies an SSH session performing broad system, network, identity, filesystem, and service enumeration in a single execution sequence. The behavior combines environment fingerprinting (kernel, CPU, uptime), user and credential surface inspection (/etc/passwd, /etc/shadow, history), network topology discovery (interfaces, routes, listening ports), process and service inventory, writable directory validation, and connectivity testing. This pattern reflects automated post-compromise host profiling used by botnets, cryptominers, and lateral-movement frameworks to determine system suitability and operational value.