← Back to feed

220.161.52.149

Threat Confidence
19%
Location
🇨🇳 CN / Zhangzhou
ASN
AS4134 · Chinanet
Cloud Provider
Total Events
21
Average by volume
Agent Count
1
First / Last Seen
2026-02-25 05:21 — 2026-03-02 17:59
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Credential Access
Command and Control
External Corroboration
Blocklist.de
Reported 2026-09-15 17:01
blocklist_de:reported
Campaigns
Not associated with any campaigns
Session Forensics
proxy_abuser ×1 credential_probe ×3
Sessions
4 (1 with login)
Avg Depth Score
0.36
Commands Executed
0
Files Downloaded
0
Fingerprints
SSH-2.0-OpenSSH_7.4
Evidence Timeline
Credential Probe 1cb9b3587503 w4m_singapore_01 · 2026-03-02 17:58
1 20%
Loading events...
Credential Probe acbc4689e8d0 w4m_singapore_01 · 2026-02-27 17:55
1 20%
Loading events...
Credential Probe 6a69a8532fe4 w4m_singapore_01 · 2026-02-26 14:06
1 20%
Loading events...
Proxy Abuser 59486c13562f w4m_singapore_01 · 2026-02-25 05:21
1 85%
Loading events...
{# Cloudflare Web Analytics — cookieless, public pages only. The context processor withholds the token from authenticated requests. #}