Active Threat β’ HIGH
137.184.183.1
Country of OriginπΊπΈ United States
First Detection3/23/2026
Last Activity3/26/2026
ISPDigitalOcean, LLC
π―
423
Total Attacks
π
1
Ports
π‘
1
Attack Types
π¦
24
Malware
Geolocation
- Country
- πΊπΈ United States
- City
- Santa Clara
- ASN
- AS14061
- ISP
- DigitalOcean, LLC
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
π345gs5662d34/345gs5662d34
4xπroot/3245gs5662d34
2xπdolphinscheduler/dolphinscheduler1234
1xπemo/emo
1xπroot/1234@qwert
1xπadi/123
1xπgrid/3245gs5662d34
1xπroot/export
1xπroot/qwe123.00
1xπgbase/gbase1234
1xπsonarqube/12345
1xπroot/aaasssddd
1xπroot/welcome123123
1xπroot/adidasi
1xπhamza/123
1xExecuted Commands
$
lockr -ia .ssh4x$
uname -m4x$
top4x$
free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'4x$
cd ~; chattr -ia .ssh; lockr -ia .ssh4x$
uname -a4x$
w4x$
cat /proc/cpuinfo | grep name | wc -l4x$
lscpu | grep Model4x$
crontab -l4xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
2280
Vulnerabilities
CVE-2025-23419CVE-2021-23017CVE-2021-3618CVE-2023-44487
CPEs
cpe:/a:f5:nginx:1.18.0cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:8.2p1cpe:/o:linux:linux_kernel
Risk Assessment
62
/100
LowMediumHighCritical