Active Threat • MEDIUM
212.16.87.65
Country of Origin🇮🇷 Iran
First Detection4/17/2026
Last Activity4/17/2026
ISPTaynet Teknoloji Ticaret Limited Sirketi
🎯
178
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
18
Malware
Geolocation
- Country
- 🇮🇷 Iran
- City
- Unknown
- ASN
- AS211557
- ISP
- Taynet Teknoloji Ticaret Limited Sirketi
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
🔐root/12345-zxcv
1x🔐test/test04
1x🔐tester/testing
1x🔐ftpuser/ftpuser15!
1x🔐ftpuser/ftpuser5
1x🔐user4/12345
1x🔐dockeruser/dockeruser
1x🔐root/Lw123456
1x🔐root/QAZwsx@123
1x🔐n8n/n8n09
1x🔐username1/username1
1x🔐ubuntu/1q2w3e4r5t
1x🔐odoo/odoo21!
1x🔐root/123_qwerty
1x🔐root/qazwsx666@@
1xExecuted Commands
$
Enter new UNIX password:2x$
echo -e "username1\n9lf2IJ8poic0\n9lf2IJ8poic0"|passwd|bash1x$
ls -lh $(which ls)1x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x$
uname -a1x$
w1x$
cat /proc/cpuinfo | grep name | wc -l1x$
crontab -l1x$
cat /proc/cpuinfo | grep model | grep name | wc -l1x$
which ls1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
22
Hostnames
SunucumFix.com
CPEs
cpe:/a:openbsd:openssh:8.9p1cpe:/o:canonical:ubuntu_linux
Risk Assessment
55
/100
LowMediumHighCritical