Active Threat โ€ข MEDIUM

1.220.64.218

First Detection2/2/2026
Last Activity2/19/2026
ISPOVH SAS
๐ŸŽฏ
52
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
9
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ฆ Canada
City
Unknown
ASN
AS16276
ISP
OVH SAS

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”oracle/1qaz@WSX
1x
๐Ÿ”root/12345
1x
๐Ÿ”root/admin
1x
๐Ÿ”admin/kjashd123sadhj123d1SS
1x
๐Ÿ”root/root
1x
๐Ÿ”root/kjashd123sadhj123d1SS
1x

Executed Commands

$uname -a2x
$ps | grep '[Mm]iner'1x
$ls -la ~/.local/share/TelegramDesktop/tdata /home/*/.local/share/TelegramDesktop/tdata /dev/ttyGSM* /dev/ttyUSB-mod* /var/spool/sms/* /var/log/smsd.log /etc/smsd.conf* /usr/bin/qmuxd /var/qmux_connect_socket /etc/config/simman /dev/modem* /var/config/sms/*1x
$/ip cloud print1x
$ps -ef | grep '[Mm]iner'1x
$cat /proc/cpuinfo1x
$ifconfig1x

Risk Assessment

55
/100
LowMediumHighCritical