Active Threat • MEDIUM
122.155.223.9
Country of Origin🇹🇭 Thailand
First Detection1/12/2026
Last Activity1/12/2026
ISPNational Telecom Public Company Limited
🎯
354
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
22
Malware
Geolocation
- Country
- 🇹🇭 Thailand
- City
- Unknown
- ASN
- AS9335
- ISP
- National Telecom Public Company Limited
Attack Types
cowrie
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐345gs5662d34/345gs5662d34
3x🔐administrador/Password@123
1x🔐ftp-test/ftp-test
1x🔐bot1/bot12026
1x🔐m/m2025
1x🔐webuser/3245gs5662d34
1x🔐sshuser/sshuser
1x🔐builduser/P@ssw0rd!
1x🔐nexus/3245gs5662d34
1x🔐ssh-user/Password
1x🔐nexus/123123
1x🔐csserver/password123
1x🔐administrator/P@ss1234
1x🔐ftp-admin/1234567890
1x🔐test/Passw0rd@1
1xExecuted Commands
$
lockr -ia .ssh3x$
top3x$
uname -m3x$
free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'3x$
cd ~; chattr -ia .ssh; lockr -ia .ssh3x$
uname -a3x$
w3x$
lscpu | grep Model3x$
cat /proc/cpuinfo | grep name | wc -l3x$
ls -lh $(which ls)3xThreatFox Intelabuse.ch
⚠️KNOWN C2 SERVER
Malware Families
win.amadey
Threat Types
botnet_cc
Confidence: 50%
Risk Assessment
55
/100
LowMediumHighCritical