Active ThreatMEDIUM

45.156.87.246

Country of Origin🇳🇱 Netherlands
First Detection1/11/2026
Last Activity1/12/2026
ISPPfcloud UG (haftungsbeschrankt)
🎯
2,534
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Eygelshoven
ASN
AS51396
ISP
Pfcloud UG (haftungsbeschrankt)

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐bigdata/bigdata
2x
🔐kuro/kuro
2x
🔐user_czn/123
2x
🔐developer/123456
2x
🔐root/passw0rd
2x
🔐elasticsearch/elasticsearch
2x
🔐root/Admin@123
2x
🔐lucky/1
2x
🔐root/root@123
2x
🔐nexus/nexus
2x
🔐server/server
2x
🔐guest/guest
2x
🔐centos/centos
2x
🔐rancher/rancher
2x
🔐roamware/roamware
2x

Executed Commands

$uname -s -v -n -r -m6x

ThreatFox Intelabuse.ch

⚠️KNOWN C2 SERVER
Malware Families
win.rhadamanthys
Threat Types
botnet_cc
Confidence: 100%

Risk Assessment

50
/100
LowMediumHighCritical