← Back to feed

172.182.225.192

Threat Confidence
54%
Location
🇺🇸 US / Phoenix
ASN
AS8075 · Microsoft Corporation
Cloud Provider
Microsoft Azure
Total Events
2913
Top 1% by volume
Agent Count
1
First / Last Seen
2026-04-29 04:47 — 2026-04-29 06:39
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Execution
Credential Access
Discovery
External Corroboration
Not flagged by any external feeds
Session Forensics
scanner ×2 reconnaissance ×317 credential_probe ×1 interactive_operator ×17 opportunistic_bruter ×1
Sessions
354 (100 with login)
Avg Depth Score
0.61
Commands Executed
159
Files Downloaded
0
Notable Commands
  • hostname 2>/dev/null || echo unknown
  • uptime -p 2>/dev/null | sed 's/up //' || echo unknown
  • nproc 2>/dev/null || grep -c '^processor' /proc/cpuinfo 2>/dev/null || echo 0
  • ssh -V 2>&1 || echo unknown
  • uname -a 2>/dev/null || echo unknown
  • bash -c 'df -k / | tail -1 | awk "{print int(\$2/1048576)}"' 2>/dev/null || echo 0
  • df -k / | tail -1 | awk "{print int(\$2/1048576)}"
  • if command -v yum >/dev/null 2>&1; then echo yum; elif command -v apt >/dev/null 2>&1; then echo apt; elif command -v dnf >/dev/null 2>&1; then echo dnf; elif command -v pacman >/dev/null 2>&1; then echo pacman; else echo none; fi
  • if command -v yum
  • then echo yum
  • elif command -v apt
  • then echo apt
  • elif command -v dnf
  • then echo dnf
  • elif command -v pacman
  • then echo pacman
  • else echo none
  • grep 'model name' /proc/cpuinfo 2>/dev/null | head -1 | cut -d ':' -f2- | sed 's/^ *//' | xargs || echo unknown
  • free -m | awk '/^Mem:/{printf "%.1f", $2/1024}' 2>/dev/null || echo 0
  • uname -m 2>/dev/null || echo unknown
Fingerprints
SSH-2.0-Go
Evidence Timeline
Reconnaissance ebfe91c9a251 newark_01 · 2026-04-29 06:44
1 1 60%
Loading events...
Reconnaissance 3984a9a8f2fc newark_01 · 2026-04-29 06:44
1 1 60%
Loading events...
Reconnaissance 5d62e6bf2ec9 newark_01 · 2026-04-29 06:44
1 1 60%
Loading events...
Reconnaissance cdba0956d02d newark_01 · 2026-04-29 06:43
1 1 60%
Loading events...
Reconnaissance a950c6b0a398 newark_01 · 2026-04-29 06:43
1 1 60%
Loading events...
Reconnaissance e41565f59970 newark_01 · 2026-04-29 06:43
1 1 60%
Loading events...
Reconnaissance 81acd07bc3d8 newark_01 · 2026-04-29 06:42
1 1 60%
Loading events...
Reconnaissance 6239a0a64c75 newark_01 · 2026-04-29 06:42
1 1 60%
Loading events...
Reconnaissance 85172555a6c4 newark_01 · 2026-04-29 06:42
1 1 60%
Loading events...
Reconnaissance 7dc171c9e1e0 newark_01 · 2026-04-29 06:41
1 1 60%
Loading events...
Reconnaissance e378c71705e8 newark_01 · 2026-04-29 06:41
1 1 60%
Loading events...
Reconnaissance 9d8ee58241f0 newark_01 · 2026-04-29 06:41
1 1 60%
Loading events...
Reconnaissance 8026d37b6e15 newark_01 · 2026-04-29 06:41
1 1 60%
Loading events...
Reconnaissance 7846e0aaebf7 newark_01 · 2026-04-29 06:40
1 1 60%
Loading events...
Reconnaissance 0d73df40dbff newark_01 · 2026-04-29 06:40
2 1 60%
Loading events...
Interactive Operator 50c799e59d3d newark_01 · 2026-04-29 06:40
11 1 90%
Loading events...
Reconnaissance 9a46af53d1fd newark_01 · 2026-04-29 06:39
2 1 60%
Loading events...
Reconnaissance 4d1d5cf354c5 newark_01 · 2026-04-29 06:39
2 1 60%
Loading events...
Reconnaissance f4852cbaf401 newark_01 · 2026-04-29 06:39
1 1 60%
Loading events...
Reconnaissance ad45e7b76efa newark_01 · 2026-04-29 06:38
1 1 60%
Loading events...
Interactive Operator a361284cf881 newark_01 · 2026-04-29 06:38
11 1 90%
Loading events...
Reconnaissance 6469dc439762 newark_01 · 2026-04-29 06:38
1 1 60%
Loading events...
Reconnaissance 5c641f79d9ce newark_01 · 2026-04-29 06:37
2 1 60%
Loading events...
Reconnaissance 69e86a339598 newark_01 · 2026-04-29 06:37
1 1 60%
Loading events...
Reconnaissance 6a036a8627d6 newark_01 · 2026-04-29 06:37
1 1 60%
Loading events...
Reconnaissance 81d274918311 newark_01 · 2026-04-29 06:36
1 1 60%
Loading events...
Reconnaissance b24498e2e479 newark_01 · 2026-04-29 06:36
1 1 60%
Loading events...
Reconnaissance a9ec8dc7c27b newark_01 · 2026-04-29 06:36
1 1 60%
Loading events...
Reconnaissance 6f57c98ab29d newark_01 · 2026-04-29 06:35
1 1 60%
Loading events...
Reconnaissance efb35ef53c59 newark_01 · 2026-04-29 06:35
1 1 60%
Loading events...
Reconnaissance e4069d67bbf4 newark_01 · 2026-04-29 06:35
2 1 60%
Loading events...
Reconnaissance 8291a7c2d4ab newark_01 · 2026-04-29 06:35
1 1 60%
Loading events...
Reconnaissance df5bb2d06689 newark_01 · 2026-04-29 06:34
1 1 60%
Loading events...
Reconnaissance 9a22cf619484 newark_01 · 2026-04-29 06:34
1 1 60%
Loading events...
Reconnaissance 6456395e8f1a newark_01 · 2026-04-29 06:33
1 1 60%
Loading events...
Reconnaissance f4977affa6cc newark_01 · 2026-04-29 06:33
1 1 60%
Loading events...
Reconnaissance de29ed3d34b9 newark_01 · 2026-04-29 06:33
1 1 60%
Loading events...
Reconnaissance 0fcf1e025390 newark_01 · 2026-04-29 06:33
1 1 60%
Loading events...
Reconnaissance d2c556e3f9b8 newark_01 · 2026-04-29 06:32
2 1 60%
Loading events...
Interactive Operator 616034d47672 newark_01 · 2026-04-29 06:32
11 1 90%
Loading events...
Reconnaissance c3c7b8c94501 newark_01 · 2026-04-29 06:31
2 1 60%
Loading events...
Interactive Operator e6e5cf598d64 newark_01 · 2026-04-29 06:31
11 1 90%
Loading events...
Reconnaissance 5f12b00f29e5 newark_01 · 2026-04-29 06:31
1 1 60%
Loading events...
Reconnaissance 7002fa49347f newark_01 · 2026-04-29 06:30
1 1 60%
Loading events...
Reconnaissance 5939644ceb79 newark_01 · 2026-04-29 06:30
1 1 60%
Loading events...
Reconnaissance 6b247abae6fb newark_01 · 2026-04-29 06:30
1 1 60%
Loading events...
Reconnaissance 5f29d8a3de76 newark_01 · 2026-04-29 06:30
1 1 60%
Loading events...
Reconnaissance 68394cd8979a newark_01 · 2026-04-29 06:29
1 1 60%
Loading events...
Reconnaissance 39c5dc2be0c9 newark_01 · 2026-04-29 06:29
1 1 60%
Loading events...
Reconnaissance fb1a7efb1349 newark_01 · 2026-04-29 06:28
1 1 60%
Loading events...