← Back to feed

4.227.135.147

Threat Confidence
54%
Location
🇺🇸 US / Washington
ASN
AS8075 · Microsoft Corporation
Cloud Provider
Microsoft Azure
Total Events
2605
Top 1% by volume
Agent Count
1
First / Last Seen
2026-04-29 04:47 — 2026-04-29 06:45
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Execution
Credential Access
Discovery
External Corroboration
Not flagged by any external feeds
Session Forensics
scanner ×1 reconnaissance ×270 credential_probe ×1 interactive_operator ×17
Sessions
289 (100 with login)
Avg Depth Score
0.62
Commands Executed
218
Files Downloaded
0
Notable Commands
  • hostname 2>/dev/null || echo unknown
  • grep 'model name' /proc/cpuinfo 2>/dev/null | head -1 | cut -d ':' -f2- | sed 's/^ *//' | xargs || echo unknown
  • xargs
  • nproc 2>/dev/null || grep -c '^processor' /proc/cpuinfo 2>/dev/null || echo 0
  • uptime -p 2>/dev/null | sed 's/up //' || echo unknown
  • sed s/up //
  • free -m | awk '/^Mem:/{printf "%.1f", $2/1024}' 2>/dev/null || echo 0
  • uname -a 2>/dev/null || echo unknown
  • if command -v yum >/dev/null 2>&1; then echo yum; elif command -v apt >/dev/null 2>&1; then echo apt; elif command -v dnf >/dev/null 2>&1; then echo dnf; elif command -v pacman >/dev/null 2>&1; then echo pacman; else echo none; fi
  • if command -v yum
  • then echo yum
  • elif command -v apt
  • then echo apt
  • elif command -v dnf
  • then echo dnf
  • elif command -v pacman
  • then echo pacman
  • else echo none
  • uname -m 2>/dev/null || echo unknown
  • bash -c 'df -k / | tail -1 | awk "{print int(\$2/1048576)}"' 2>/dev/null || echo 0
Fingerprints
SSH-2.0-Go
Evidence Timeline
Reconnaissance 1a99485840e9 w4m_seattle_01 · 2026-04-29 06:45
1 1 60%
Loading events...
Reconnaissance ae02ebe96c89 w4m_seattle_01 · 2026-04-29 06:44
2 1 60%
Loading events...
Reconnaissance 3bd3379c4481 w4m_seattle_01 · 2026-04-29 06:43
1 1 60%
Loading events...
Reconnaissance 5f9d7f048e5d w4m_seattle_01 · 2026-04-29 06:43
1 1 60%
Loading events...
Reconnaissance 181be00a3171 w4m_seattle_01 · 2026-04-29 06:43
1 1 60%
Loading events...
Reconnaissance 5f4de91eaf42 w4m_seattle_01 · 2026-04-29 06:42
2 1 60%
Loading events...
Reconnaissance d4d50eb029f9 w4m_seattle_01 · 2026-04-29 06:42
1 1 60%
Loading events...
Reconnaissance 401524a3c4bd w4m_seattle_01 · 2026-04-29 06:41
1 1 60%
Loading events...
Interactive Operator 908383957c92 w4m_seattle_01 · 2026-04-29 06:41
11 1 90%
Loading events...
Reconnaissance 9644ddd412d9 w4m_seattle_01 · 2026-04-29 06:41
1 1 60%
Loading events...
Reconnaissance af078bbdc279 w4m_seattle_01 · 2026-04-29 06:40
1 1 60%
Loading events...
Reconnaissance 1555f62d7f01 w4m_seattle_01 · 2026-04-29 06:40
1 1 60%
Loading events...
Reconnaissance 9248955b12b7 w4m_seattle_01 · 2026-04-29 06:40
1 1 60%
Loading events...
Reconnaissance e7a4d6e622c4 w4m_seattle_01 · 2026-04-29 06:39
2 1 60%
Loading events...
Reconnaissance bc1e27ef1eac w4m_seattle_01 · 2026-04-29 06:39
1 1 60%
Loading events...
Interactive Operator e0eb74e1f536 w4m_seattle_01 · 2026-04-29 06:38
11 1 90%
Loading events...
Reconnaissance 5d2ac1e777cd w4m_seattle_01 · 2026-04-29 06:38
1 1 60%
Loading events...
Reconnaissance e74769d1baf3 w4m_seattle_01 · 2026-04-29 06:38
2 1 60%
Loading events...
Reconnaissance c830bf145cf8 w4m_seattle_01 · 2026-04-29 06:37
1 1 60%
Loading events...
Reconnaissance 36bf5f09a2bf w4m_seattle_01 · 2026-04-29 06:37
1 1 60%
Loading events...
Reconnaissance 610771b56707 w4m_seattle_01 · 2026-04-29 06:36
1 1 60%
Loading events...
Reconnaissance 07a87ca651d7 w4m_seattle_01 · 2026-04-29 06:36
1 1 60%
Loading events...
Reconnaissance 02535d756a97 w4m_seattle_01 · 2026-04-29 06:36
2 1 60%
Loading events...
Reconnaissance a4a3f8e4ad57 w4m_seattle_01 · 2026-04-29 06:35
1 1 60%
Loading events...
Reconnaissance 29c38e58e1fe w4m_seattle_01 · 2026-04-29 06:34
2 1 60%
Loading events...
Reconnaissance b3ff9dcb122c w4m_seattle_01 · 2026-04-29 06:34
1 1 60%
Loading events...
Reconnaissance f260df617ccd w4m_seattle_01 · 2026-04-29 06:34
1 1 60%
Loading events...
Reconnaissance ec6855f556b3 w4m_seattle_01 · 2026-04-29 06:33
2 1 60%
Loading events...
Reconnaissance 140c21b6999b w4m_seattle_01 · 2026-04-29 06:33
1 1 60%
Loading events...
Reconnaissance 8e4e94907987 w4m_seattle_01 · 2026-04-29 06:33
1 1 60%
Loading events...
Reconnaissance 39c6d150ba92 w4m_seattle_01 · 2026-04-29 06:32
1 1 60%
Loading events...
Reconnaissance 0de13005b7a1 w4m_seattle_01 · 2026-04-29 06:32
3 1 60%
Loading events...
Reconnaissance 007cb183a7c4 w4m_seattle_01 · 2026-04-29 06:31
2 1 60%
Loading events...
Reconnaissance 21afd97386a3 w4m_seattle_01 · 2026-04-29 06:31
1 1 60%
Loading events...
Reconnaissance 3ee894326309 w4m_seattle_01 · 2026-04-29 06:31
1 1 60%
Loading events...
Reconnaissance d33d83579a7a w4m_seattle_01 · 2026-04-29 06:30
3 1 60%
Loading events...
Reconnaissance 897b0af65066 w4m_seattle_01 · 2026-04-29 06:30
1 1 60%
Loading events...
Reconnaissance 9979aea5a415 w4m_seattle_01 · 2026-04-29 06:30
1 1 60%
Loading events...
Reconnaissance 1534ec44496f w4m_seattle_01 · 2026-04-29 06:29
1 1 60%
Loading events...
Reconnaissance c35c8dca42ee w4m_seattle_01 · 2026-04-29 06:29
2 1 60%
Loading events...
Interactive Operator 53448ffa81a5 w4m_seattle_01 · 2026-04-29 06:28
11 1 90%
Loading events...
Reconnaissance 4b4ac0252eb1 w4m_seattle_01 · 2026-04-29 06:28
1 1 60%
Loading events...
Reconnaissance da280f97ea59 w4m_seattle_01 · 2026-04-29 06:28
2 1 60%
Loading events...
Reconnaissance 23417d1888b4 w4m_seattle_01 · 2026-04-29 06:27
1 1 60%
Loading events...
Reconnaissance e65802a28fd7 w4m_seattle_01 · 2026-04-29 06:27
2 1 60%
Loading events...
Reconnaissance 48c378d9e45a w4m_seattle_01 · 2026-04-29 06:26
3 1 60%
Loading events...
Interactive Operator c52fcc4b37fa w4m_seattle_01 · 2026-04-29 06:26
11 1 90%
Loading events...
Reconnaissance 7dd64352a779 w4m_seattle_01 · 2026-04-29 06:26
2 1 60%
Loading events...
Reconnaissance b25abb621725 w4m_seattle_01 · 2026-04-29 06:25
3 1 60%
Loading events...
Reconnaissance 1e3a95249bba w4m_seattle_01 · 2026-04-29 06:25
3 1 60%
Loading events...