Active Threat • MEDIUM
157.20.172.86
Country of Origin🇮🇳 India
First Detection3/30/2026
Last Activity3/30/2026
ISPHOSTZOP CLOUD SERVICES PRIVATE LIMITED
🎯
163
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
20
Malware
Geolocation
- Country
- 🇮🇳 India
- City
- Chennai
- ASN
- AS138244
- ISP
- HOSTZOP CLOUD SERVICES PRIVATE LIMITED
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐root/Pp123456
1x🔐root/root123456A
1x🔐root/Gd@ta2004
1x🔐root/912026
1x🔐root/Asd1234!@#$
1x🔐root/ROOT1qaz2wsx
1x🔐root/sal
1x🔐root/naruto
1x🔐root/1024
1x🔐root/root1@3
1x🔐root/3245gs5662d34
1x🔐root/1qwertyuiop
1x🔐root/Root654321
1x🔐root/test@admin
1x🔐root/Ka.123456
1xExecuted Commands
$
lscpu | grep Model1x$
ls -lh $(which ls)1x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x$
uname -a1x$
w1x$
cat /proc/cpuinfo | grep name | wc -l1x$
echo "root:1KCq6ER1CTN7"|chpasswd|bash1x$
crontab -l1x$
cat /proc/cpuinfo | grep model | grep name | wc -l1x$
which ls1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
223128
Vulnerabilities
CVE-2024-37894CVE-2023-46848CVE-2025-59362CVE-2023-46728CVE-2023-46847CVE-2023-5824CVE-2023-49285CVE-2024-45802CVE-2025-62168CVE-2023-46724CVE-2023-50269CVE-2025-54574CVE-2023-46846CVE-2023-49288CVE-2024-25617CVE-2024-23638CVE-2023-49286CVE-2024-25111
Hostnames
static-172.20.157.hostzop.com
CPEs
cpe:/a:openbsd:openssh:8.9p1cpe:/o:canonical:ubuntu_linuxcpe:/a:squid-cache:squid:5.9
Risk Assessment
55
/100
LowMediumHighCritical