Active Threat โ€ข HIGH

203.2.164.205

First Detection1/8/2026
Last Activity2/18/2026
ISPCHINANET SHAANXI province Cloud Base network
๐ŸŽฏ
142
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
18
Malware

Geolocation

Country
๐Ÿ‡จ๐Ÿ‡ณ China
City
Unknown
ASN
AS134768
ISP
CHINANET SHAANXI province Cloud Base network

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”builder/builder@123
1x
๐Ÿ”arash/3245gs5662d34
1x
๐Ÿ”frappeuser/frappeuser
1x
๐Ÿ”hong/hong123
1x
๐Ÿ”root/147258369
1x
๐Ÿ”arash/123
1x
๐Ÿ”root/Gd123456
1x
๐Ÿ”shiny/shiny
1x

Executed Commands

$Enter new UNIX password:2x
$free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'1x
$lscpu | grep Model1x
$cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x
$uname -a1x
$echo "123\nT5nUoQRPH8mP\nT5nUoQRPH8mP\n"|passwd1x
$cat /proc/cpuinfo | grep name | wc -l1x
$crontab -l1x
$cat /proc/cpuinfo | grep model | grep name | wc -l1x
$which ls1x

Risk Assessment

65
/100
LowMediumHighCritical