Active Threat • MEDIUM
103.199.19.57
Country of Origin🇻🇳 Vietnam
First Detection3/27/2026
Last Activity3/30/2026
ISP365 Online technology joint stock company
🎯
491
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
4
Malware
Geolocation
- Country
- 🇻🇳 Vietnam
- City
- Unknown
- ASN
- AS63734
- ISP
- 365 Online technology joint stock company
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐root/admin
3x🔐admin/password
2x🔐admin/admin
2x🔐root/DS920+
1x🔐root/root
1x🔐root/AS6604T
1x🔐root/TVS-872XT
1x🔐raspberry/$BLANKPASS
1x🔐root/RN212
1x🔐root/AS3202T
1x🔐root/TS-231
1x🔐root/RR4312X
1x🔐root/TS-451+
1x🔐backup/netgear
1x🔐debian/temppwd
1xExecuted Commands
$
hostname1x$
free -h 2>/dev/null | grep Mem | awk '{print $2}' 2>/dev/null1x$
uname -a1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
21222553801101434434655878879939954400567880458080909090911600016001
Hostnames
dev.pidpharma.commail.1102.eu.orgharichu.net1102.eu.org
CPEs
cpe:/a:minio:miniocpe:/a:gunicorn:gunicorncpe:/a:f5:nginxcpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:9.6p1cpe:/a:pureftpd:pure-ftpdcpe:/a:postfix:postfixcpe:/a:n8n:n8ncpe:/a:nodejs:nodejscpe:/a:python:pythoncpe:/a:amazon:elastic_load_balancing
Risk Assessment
55
/100
LowMediumHighCritical