Active Threat • MEDIUM
190.242.109.42
Country of Origin🇨🇴 Colombia
First Detection4/29/2026
Last Activity4/29/2026
ISPLIBERTY NETWORKS DE COLOMBIA S.A.S
🎯
208
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
18
Malware
Geolocation
- Country
- 🇨🇴 Colombia
- City
- Unknown
- ASN
- AS262191
- ISP
- LIBERTY NETWORKS DE COLOMBIA S.A.S
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐root/Sa123123
1x🔐user1/pass
1x🔐test/password123
1x🔐root/1q2w3e4r*
1x🔐root/server
1x🔐root/Qweasdzxc123
1x🔐test/3245gs5662d34
1x🔐ubuntu/P@ssw0rd12
1x🔐root/Windows@2025
1x🔐docker/123456
1x🔐ubuntu/Qwer1234!
1x🔐root/q1w2e3!@
1x🔐ftp_user/test
1x🔐root/Sf123456
1x🔐root/P@ssw0rd!2026
1xExecuted Commands
$
Enter new UNIX password:2x$
ls -lh $(which ls)1x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x$
uname -a1x$
w1x$
cat /proc/cpuinfo | grep name | wc -l1x$
crontab -l1x$
cat /proc/cpuinfo | grep model | grep name | wc -l1x$
which ls1x$
uname1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
444222233898083
Vulnerabilities
CVE-2023-38408CVE-2025-23048CVE-2009-0796CVE-2025-65082CVE-2009-3767CVE-2024-47252CVE-2012-4001CVE-2020-15778CVE-2013-2765CVE-2018-15919CVE-2008-3844CVE-2025-32728CVE-2025-49812CVE-2007-4723CVE-2019-6110CVE-2025-58098CVE-2019-0190CVE-2009-3765CVE-2009-1390CVE-2019-6109
Hostnames
mail.tecnoplast.com.co
CPEs
cpe:/a:apache:http_server:2.4.62cpe:/a:openbsd:openssh:7.4cpe:/a:openssl:openssl:3.2.2
Risk Assessment
55
/100
LowMediumHighCritical