← Back to feed
52.176.138.197
Location
🇺🇸 US / Des Moines
ASN
AS8075 · Microsoft Corporation
Cloud Provider
Microsoft Azure
Total Events
37
Average by volume
Agent Count
1
First / Last Seen
2026-04-13 08:10 — 2026-04-13 11:01
Attack Types
MITRE ATT&CK Techniques
External Corroboration
Not flagged by any external feeds
Campaigns
Not associated with any campaigns
Session Forensics
Sessions
5 (4 with login)
Avg Depth Score
0.55
Commands Executed
4
Files Downloaded
0
Notable Commands
- uptime
- uname -a
- hostname
Fingerprints
HASSH
SSH Client
Evidence Timeline
Reconnaissance
50b7f242eed6
LOGIN
1
1
60%
Loading events...
HASSH 16443846184eafd…
SSH-2.0-Go
$ uptime
Reconnaissance
7a7ae879ca25
LOGIN
1
1
60%
Loading events...
HASSH 16443846184eafd…
SSH-2.0-Go
$ uname -a
Reconnaissance
110b309ba60b
LOGIN
1
1
60%
Loading events...
HASSH 16443846184eafd…
SSH-2.0-Go
$ hostname
Reconnaissance
7066aa79cae3
LOGIN
1
1
60%
Loading events...
HASSH 16443846184eafd…
SSH-2.0-Go
$ uname -a
Credential Harvester
a09fc73e0bab
1
35%
Loading events...
HASSH 16443846184eafd…
SSH-2.0-Go