← Back to feed
Location
🇪🇬 EG / 6th of October City
ASN
AS8452 · IDDQD-AS
Cloud Provider
—
Total Events
68
Above average by volume
Agent Count
1
First / Last Seen
2026-08-18 11:18 — 2026-08-18 11:20
Attack Types
MITRE ATT&CK Techniques
Initial Access
Execution
Exfiltration
External Corroboration
Not flagged by any external feeds
Campaigns
Not associated with any campaigns
Session Forensics
Sessions
4 (2 with login)
Avg Depth Score
0.44
Commands Executed
14
Files Downloaded
0
Notable Commands
- uname -a
- hostname
- uname -m&&pkill upnpsetup
- chmod 777 zsvc
- chmod 777 upnpsetup
- sudo ./upnpsetup
- ./upnpsetup
- ./upnpsetup
- sudo ./zsvc
- ./zsvc
Fingerprints
HASSH
SSH Client
Evidence Timeline
Data Exfiltrator
0665e7b75286
LOGIN
14
1
90%
Loading events...
HASSH 742ee33575d0ff8…
SSH-2.0-libssh_0.9.5
$ uname -a$ hostname$ uname -m&&pkill upnpsetup$ chmod 777 zsvc$ chmod 777 upnpsetup
Opportunistic Bruter
1fffbd29de33
LOGIN
1
50%
Loading events...
HASSH 742ee33575d0ff8…
SSH-2.0-libssh_0.9.5
Scanner
c20de40bf489
15%
Loading events...