Active ThreatMEDIUM

103.13.206.152

Country of Origin🇮🇩 Indonesia
First Detection1/4/2026
Last Activity1/4/2026
ISPCloud Host Pte Ltd
🎯
309
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
20
Malware

Geolocation

Country
🇮🇩 Indonesia
City
Unknown
ASN
AS138608
ISP
Cloud Host Pte Ltd

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐345gs5662d34/345gs5662d34
2x
🔐admin/admin256
1x
🔐root/1qaz@WSX1qaz
1x
🔐claude/3245gs5662d34
1x
🔐jeff/jeff
1x
🔐root/Abc123##
1x
🔐root/5201314a
1x
🔐redmine/1234
1x
🔐root/l
1x
🔐server/server2026
1x
🔐claude/123
1x
🔐jellyfin/jellyfin
1x
🔐daniela/123456
1x
🔐root/server@23
1x
🔐root/Asd123123123
1x

Executed Commands

$crontab -l3x
$cat /proc/cpuinfo | grep model | grep name | wc -l3x
$which ls3x
$lscpu | grep Model3x
$uname3x
$whoami3x
$df -h | head -n 2 | awk 'FNR == 2 {print $2;}'3x
$ls -lh $(which ls)3x
$uname -a3x
$top3x

Risk Assessment

55
/100
LowMediumHighCritical