Active Threat • HIGH
163.7.6.74
🎯
551
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
26
Malware
Geolocation
- Country
- 🇮🇩 Indonesia
- City
- Unknown
- ASN
- AS150436
- ISP
- Byteplus Pte. Ltd.
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐345gs5662d34/345gs5662d34
4x🔐root/3245gs5662d34
3x🔐root/txkj@2024
1x🔐user/123!@#qweQWE
1x🔐elasticsearch/elasticsearch@1234
1x🔐erwin/erwinpass
1x🔐claude/claude123
1x🔐root/Login12
1x🔐administrator/Administrator123
1x🔐root/123qwe123
1x🔐root/Sumi20240827
1x🔐root/asdf
1x🔐yasin/yasin1234
1x🔐root/Root888..
1x🔐root/1234asd
1xExecuted Commands
$
whoami5x$
df -h | head -n 2 | awk 'FNR == 2 {print $2;}'5x$
free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'5x$
ls -lh $(which ls)5x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'5x$
uname -a5x$
w5x$
uname -m5x$
cat /proc/cpuinfo | grep name | wc -l5x$
crontab -l5xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
443
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:9.6p1
Risk Assessment
65
/100
LowMediumHighCritical