← Back to feed

91.92.40.7

Threat Confidence
50%
Location
🇧🇬 BG
ASN
AS209630 · LLC Vash Kredit Bank
Cloud Provider
Total Events
609
Top 10% by volume
Agent Count
1
First / Last Seen
2026-06-16 06:49 — 2026-06-16 08:53
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
External Corroboration
Blocklist.de
Reported 2026-06-16 08:02
blocklist_de:reported
Session Forensics
reconnaissance ×12 credential_probe ×3
Sessions
15 (12 with login)
Avg Depth Score
0.52
Commands Executed
48
Files Downloaded
0
Notable Commands
  • export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:$PATH; uname=$(uname -s -v -n -m 2>/dev/null); arch=$(uname -m 2>/dev/null); uptime=$(cat /proc/uptime 2>/dev/null | cut -d. -f1); cpus=$( (nproc 2>/dev/null || /usr/bin/nproc 2>/dev/null || grep -c "^processor" /proc/cpuinfo 2>/dev/null) | head -1); cpu_model=$( (grep -m1 -E "model name|Hardware" /proc/cpuinfo | cut -d: -f2- | sed 's/^ *//;s/ *$//' ; lscpu 2>/dev/null | awk -F: '/Model name/ {gsub(/^ +| +$/,"",$2); print $2; exit}' ; dmidecode -s processor-version 2>/dev/null | head -n1 ; uname -p 2>/dev/null) | awk 'NF{print; exit}' ); gpu_info=$( (lspci 2>/dev/null | grep -i vga; lspci 2>/dev/null | grep -i nvidia) 2>/dev/null | head -n50); cat_help=$( (cat --help 2>&1 | tr '\n' ' ') || cat --help 2>&1); ls_help=$( (ls --help 2>&1 | tr '\n' ' ') || ls --help 2>&1); last_output=$(last 2>/dev/null | head -n 10); echo "UNAME:$uname"; echo "ARCH:$arch"; echo "UPTIME:$uptime"; echo "CPUS:$cpus"; echo "CPU_MODEL:$cpu_model"; echo "GPU:$gpu_info"; echo "CAT_HELP:$cat_help"; echo "LS_HELP:$ls_help"; echo "LAST:$last_output"
  • uname -s -v -n -m 2 > /dev/null
  • uname -m 2 > /dev/null
  • cat /proc/uptime 2 > /dev/null | cut -d. -f1
Fingerprints
SSH-2.0-Go
Evidence Timeline
Credential Probe e1e61644032b newark_01 · 2026-06-16 08:47
1 20%
Loading events...
Reconnaissance 5027b34e64e5 newark_01 · 2026-06-16 08:26
4 1 60%
Loading events...
Reconnaissance 2ceed4de10ae newark_01 · 2026-06-16 08:24
4 1 60%
Loading events...
Reconnaissance 721a8ed42549 newark_01 · 2026-06-16 07:53
4 1 60%
Loading events...
Reconnaissance 669d415a2f84 newark_01 · 2026-06-16 07:48
4 1 60%
Loading events...
Reconnaissance ab2143b8d422 newark_01 · 2026-06-16 07:36
4 1 60%
Loading events...
Reconnaissance 070d5c0b0ec4 newark_01 · 2026-06-16 07:34
4 1 60%
Loading events...
Reconnaissance 756d05370ac7 newark_01 · 2026-06-16 07:30
4 1 60%
Loading events...
Reconnaissance 08358c878dc1 newark_01 · 2026-06-16 07:17
4 1 60%
Loading events...
Reconnaissance 9a9c443be74b newark_01 · 2026-06-16 07:07
4 1 60%
Loading events...
Reconnaissance a4f2f023597b newark_01 · 2026-06-16 07:04
4 1 60%
Loading events...
Reconnaissance 3dec46b3210c newark_01 · 2026-06-16 07:02
4 1 60%
Loading events...
Credential Probe e07e3ab8f669 newark_01 · 2026-06-16 06:58
1 20%
Loading events...
Reconnaissance 1bd51b36138d newark_01 · 2026-06-16 06:56
4 1 60%
Loading events...
Credential Probe 8920a326c246 newark_01 · 2026-06-16 06:51
1 20%
Loading events...