← Back to feed
Location
🇧🇬 BG
ASN
AS209630 · LLC Vash Kredit Bank
Cloud Provider
—
Total Events
133
Above average by volume
Agent Count
1
First / Last Seen
2026-06-17 00:00 — 2026-06-17 00:19
Attack Types
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Execution
External Corroboration
Blocklist.de
blocklist_de:reported
Session Forensics
Sessions
5 (4 with login)
Avg Depth Score
0.75
Commands Executed
40
Files Downloaded
0
Notable Commands
- export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:$PATH; uname=$(uname -s -v -n -m 2>/dev/null); arch=$(uname -m 2>/dev/null); uptime=$(cat /proc/uptime 2>/dev/null | cut -d. -f1); cpus=$( (nproc 2>/dev/null || /usr/bin/nproc 2>/dev/null || grep -c "^processor" /proc/cpuinfo 2>/dev/null) | head -1); cpu_model=$( (grep -m1 -E "model name|Hardware" /proc/cpuinfo | cut -d: -f2- | sed 's/^ *//;s/ *$//' ; lscpu 2>/dev/null | awk -F: '/Model name/ {gsub(/^ +| +$/,"",$2); print $2; exit}' ; dmidecode -s processor-version 2>/dev/null | head -n1 ; uname -p 2>/dev/null) | awk 'NF{print; exit}' ); gpu_info=$( (lspci 2>/dev/null | grep -i vga; lspci 2>/dev/null | grep -i nvidia) 2>/dev/null | head -n50); cat_help=$( (cat --help 2>&1 | tr '\n' ' ') || cat --help 2>&1); ls_help=$( (ls --help 2>&1 | tr '\n' ' ') || ls --help 2>&1); last_output=$(last 2>/dev/null | head -n 10); echo "UNAME:$uname"; echo "ARCH:$arch"; echo "UPTIME:$uptime"; echo "CPUS:$cpus"; echo "CPU_MODEL:$cpu_model"; echo "GPU:$gpu_info"; echo "CAT_HELP:$cat_help"; echo "LS_HELP:$ls_help"; echo "LAST:$last_output"
- uname -s -v -n -m 2 > /dev/null
- uname -m 2 > /dev/null
- cat /proc/uptime 2 > /dev/null | cut -d. -f1
- echo '1234' | sudo -S bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0' || bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0'
- m=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0
- while read k v r
- { m=$v
- break
- }
- echo 'passw0rd' | sudo -S bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0' || bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0'
- echo '12345678' | sudo -S bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0' || bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0'
- echo '12345' | sudo -S bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0' || bash -c 'm=0; while read k v r; do [ "$k" = MemTotal: ] && { m=$v; break; }; done < /proc/meminfo 2>/dev/null; [ "$m" -gt 1048576 ] 2>/dev/null && echo 1 || echo 0'
Fingerprints
HASSH
SSH Client
Evidence Timeline
Interactive Operator
4df6977529ed
LOGIN
10
1
90%
Loading events...
HASSH 2ec37a7cc8daf20…
SSH-2.0-Go
$ export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/b…$ uname -s -v -n -m 2 > /dev/null$ uname -m 2 > /dev/null$ cat /proc/uptime 2 > /dev/null | cut -d. -f1$ echo '1234' | sudo -S bash -c 'm=0; while read k v r; do [ …
Interactive Operator
b4b18766bf6e
LOGIN
10
1
90%
Loading events...
HASSH 2ec37a7cc8daf20…
SSH-2.0-Go
$ export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/b…$ uname -s -v -n -m 2 > /dev/null$ uname -m 2 > /dev/null$ cat /proc/uptime 2 > /dev/null | cut -d. -f1$ echo 'passw0rd' | sudo -S bash -c 'm=0; while read k v r; d…
Interactive Operator
2509d6e06ad8
LOGIN
10
1
90%
Loading events...
HASSH 2ec37a7cc8daf20…
SSH-2.0-Go
$ export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/b…$ uname -s -v -n -m 2 > /dev/null$ uname -m 2 > /dev/null$ cat /proc/uptime 2 > /dev/null | cut -d. -f1$ echo '12345678' | sudo -S bash -c 'm=0; while read k v r; d…
Interactive Operator
705bafd5f082
LOGIN
10
1
90%
Loading events...
HASSH 2ec37a7cc8daf20…
SSH-2.0-Go
$ export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/b…$ uname -s -v -n -m 2 > /dev/null$ uname -m 2 > /dev/null$ cat /proc/uptime 2 > /dev/null | cut -d. -f1$ echo '12345' | sudo -S bash -c 'm=0; while read k v r; do […
Scanner
99963f999e6a
15%
Loading events...