Active Threat • MEDIUM
186.96.145.241
Country of Origin🇲🇽 Mexico
First Detection2/25/2026
Last Activity3/25/2026
ISPTOTAL PLAY TELECOMUNICACIONES SA DE CV
🎯
30,099
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware
Geolocation
- Country
- 🇲🇽 Mexico
- City
- Mexico City
- ASN
- AS22884
- ISP
- TOTAL PLAY TELECOMUNICACIONES SA DE CV
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐root/12345678
22x🔐centos/123
15x🔐centos/123456
15x🔐oracle/111111
14x🔐user/passw0rd
14x🔐user/1234567
14x🔐ubuntu/pass123
14x🔐oracle/pass
14x🔐oracle/11
14x🔐root/123
14x🔐test/12345678
14x🔐user/pass
14x🔐user/1234567890
14x🔐centos/123456789
14x🔐root/12
14xExecuted Commands
$
uname -s -v -n -r -m17xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
21225432818110443
Vulnerabilities
CVE-2025-53020CVE-2021-33193CVE-2023-27522CVE-2023-38408CVE-2021-32792CVE-2024-43204CVE-2022-29404CVE-2019-10097CVE-2021-32791CVE-2023-31122CVE-2023-45802CVE-2024-38477CVE-2012-3526CVE-2021-26691CVE-2018-17199CVE-2023-51767CVE-2021-32786CVE-2022-36760CVE-2024-38474CVE-2007-2768
Hostnames
fixed-186-96-145-241.totalplay.net
CPEs
cpe:/a:apache:http_server:2.4.37cpe:/o:fortinet:fortioscpe:/a:postgresql:postgresql::::escpe:/a:openbsd:openssh:8.0
Risk Assessment
55
/100
LowMediumHighCritical