Active Threat โ€ข HIGH

171.220.244.134

First Detection1/17/2026
Last Activity2/22/2026
ISPCHINANET SiChuan Telecom Internet Data Center
๐ŸŽฏ
946
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
27
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ณ China
City
Unknown
ASN
AS38283
ISP
CHINANET SiChuan Telecom Internet Data Center

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”345gs5662d34/345gs5662d34
3x
๐Ÿ”mmk/3245gs5662d34
2x
๐Ÿ”ccc/123456
2x
๐Ÿ”root/tmax
2x
๐Ÿ”mmk/mmk123
2x
๐Ÿ”ftp/ftp123!
1x
๐Ÿ”valerie/3245gs5662d34
1x
๐Ÿ”redmine/1
1x
๐Ÿ”etcduser/etcduser
1x
๐Ÿ”bishop/bishop@123
1x
๐Ÿ”user/user2025
1x
๐Ÿ”test/testtest1
1x
๐Ÿ”sinusbot1/sinusbot1@123
1x
๐Ÿ”tomcat/q1w2e3
1x
๐Ÿ”raidzone/raidzone123
1x

Executed Commands

$Enter new UNIX password:9x
$uname5x
$df -h | head -n 2 | awk 'FNR == 2 {print $2;}'5x
$free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'5x
$lockr -ia .ssh5x
$top5x
$uname -m5x
$w5x
$cd ~; chattr -ia .ssh; lockr -ia .ssh5x
$lscpu | grep Model5x

Risk Assessment

65
/100
LowMediumHighCritical