Loading threats
Identifies the use of echo to supply Base64-encoded data directly into base64 -d (decode), typically to reconstruct payload content inline within an SSH session. This pattern is commonly used to decode staged command fragments, scripts, or small binary blobs without writing the encoded string to disk first. The redirection of stderr to /dev/null further suggests an attempt to suppress decoding errors or reduce noise.
| IP Address | Risk | Events | Sessions | Country | ASN | Last Seen |
|---|---|---|---|---|---|---|
| 212.227.244.80 | 96% | 597,928 | 12,747 | 🇩🇪 DE | AS8560 | 2026-02-07 |
| 152.53.184.147 | 100% | 156,831 | 3,603 | 🇦🇹 AT | AS197540 | 2026-03-02 |
| 200.59.147.207 | 96% | 147,662 | 3,276 | 🇦🇷 AR | AS11664 | 2026-02-04 |
| 106.12.75.58 | 99% | 3,389 | 3,383 | 🇨🇳 CN | AS38365 | 2026-02-27 |
| 213.125.209.110 | 100% | 1,641 | 1,539 | 🇳🇱 NL | AS33915 | 2026-02-28 |
| 189.23.51.162 | 100% | 1,458 | 1,454 | 🇧🇷 BR | AS4230 | 2026-02-22 |
| 123.58.209.118 | 100% | 837 | 808 | 🇭🇰 HK | AS135377 | 2026-02-24 |
| 219.151.187.97 | 99% | 674 | 277 | 🇨🇳 CN | AS134420 | 2026-03-01 |
| 31.128.34.159 | 100% | 290 | 290 | 🇱🇻 LV | AS9002 | 2026-02-19 |
| 211.99.97.203 | 64% | 68 | 48 | 🇨🇳 CN | AS134763 | 2026-02-27 |
| 196.204.221.118 | 95% | 8 | 8 | 🇪🇬 EG | AS24835 | 2026-03-02 |