← Back to feed

52.149.66.2

Threat Confidence
13%
Location
🇳🇱 NL / Amsterdam
ASN
AS8075 · Microsoft Corporation
Cloud Provider
Microsoft Azure
Total Events
15
Average by volume
Agent Count
1
First / Last Seen
2026-02-25 16:40 — 2026-02-25 16:40
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Execution
Credential Access
Discovery
Command and Control
External Corroboration
Not flagged by any external feeds
Campaigns
Not associated with any campaigns
Session Forensics
malware_dropper ×1 credential_probe ×1
Sessions
2 (1 with login)
Avg Depth Score
0.6
Commands Executed
2
Files Downloaded
1
Notable Commands
  • cd /tmp ; echo uname -a > monaco ; chmod 777 monaco ; ./monaco
  • ./monaco
Fingerprints
SSH-2.0-Go
Evidence Timeline
Credential Probe 5a6462cab1e0 w4m_singapore_01 · 2026-02-25 16:40
1 20%
Loading events...
Malware Dropper a2d50af26c5a w4m_singapore_01 · 2026-02-25 16:40
2 1 1 100%
Loading events...
{# Cloudflare Web Analytics — cookieless, public pages only. The context processor withholds the token from authenticated requests. #}