Amenaza ActivaMEDIO

136.119.213.208

Primera Deteccion10/1/2026
Ultima Actividad10/1/2026
ISPGOOGLE-CLOUD-PLATFORM
🎯
405
Ataques Totales
🔌
1
Puertos
📡
1
Tipos Ataque
🦠
24
Malware

Geolocalizacion

Pais
🇺🇸 Estados Unidos
Ciudad
Council Bluffs
ASN
AS396982
ISP
GOOGLE-CLOUD-PLATFORM

Tipos de Ataque

cowrie

Puertos Atacados

22

Malware Asociado

Credenciales Intentadas

🔐345gs5662d34/345gs5662d34
4x
🔐claude/Hello2025
1x
🔐vpn/Password123
1x
🔐steam/newpassword
1x
🔐ftpuser/Huawei12#$
1x
🔐server/Password@123
1x
🔐postgres/Admin-123
1x
🔐vpn/abc@123
1x
🔐ftpuser/1
1x
🔐root/Master@123
1x
🔐user/@admin123
1x
🔐teamspeak/Admin123
1x
🔐admin/abc@12345
1x
🔐deployerer/12344321
1x
🔐postgres/changeme
1x

Comandos Ejecutados

$top4x
$uname -m4x
$whoami4x
$free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'4x
$cat /proc/cpuinfo | grep name | wc -l4x
$df -h | head -n 2 | awk 'FNR == 2 {print $2;}'4x
$lscpu | grep Model4x
$cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'4x
$uname -a4x
$uname4x

Evaluacion de Riesgo

55
/100
BajoMedioAltoCritico
IP 136.119.213.208 - Amenaza Detectada | TroyanosYVirus.com | TroyanosYVirus.com