Active Threat • MEDIUM
201.17.133.138
Country of Origin🇧🇷 Brazil
First Detection1/9/2026
Last Activity1/9/2026
ISPClaro NXT Telecomunicacoes Ltda
🎯
223
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
18
Malware
Geolocation
- Country
- 🇧🇷 Brazil
- City
- Nova Lima
- ASN
- AS28573
- ISP
- Claro NXT Telecomunicacoes Ltda
Attack Types
cowrie
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐vpn/123root
1x🔐ftpuser/P@ssword1!
1x🔐ftpuser/Qwerty123!
1x🔐test/test02
1x🔐ftpuser/Admin@2024
1x🔐testuser/159357
1x🔐frappe/P@ssword!
1x🔐user/2024@
1x🔐ubuntu/Pass1234
1x🔐root/123456789
1x🔐user2/Aa@123
1x🔐user2/welcome1
1x🔐ionadmin/ionadmin
1x🔐vpn/plunga471
1x🔐claude/Abcd@1234
1xExecuted Commands
$
crontab -l1x$
cat /proc/cpuinfo | grep model | grep name | wc -l1x$
which ls1x$
lscpu | grep Model1x$
echo "plunga471\nMW1a1CIKVGBd\nMW1a1CIKVGBd\n"|passwd1x$
Enter new UNIX password:1x$
uname1x$
whoami1x$
df -h | head -n 2 | awk 'FNR == 2 {print $2;}'1x$
echo -e "plunga471\nMW1a1CIKVGBd\nMW1a1CIKVGBd"|passwd|bash1xRisk Assessment
55
/100
LowMediumHighCritical