Active Threat β’ MEDIUM
45.228.189.33
π―
94
Total Attacks
π
1
Ports
π‘
1
Attack Types
π¦
19
Malware
Geolocation
- Country
- π¦π· Argentina
- City
- OberΓ‘
- ASN
- AS266668
- ISP
- OBERCOM S.R.L.
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
πtunnel/tunnel
1xπroot/QWEasd!@#123
1xπfrank/12345
1xπdaniel/Daniel123!
1xπroot/2wsx#EDC4rfv
1xπ345gs5662d34/345gs5662d34
1xπtunnel/3245gs5662d34
1xExecuted Commands
$
Enter new UNIX password:2x$
ls -lh $(which ls)1x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x$
uname -a1x$
w1x$
cat /proc/cpuinfo | grep name | wc -l1x$
echo -e "tunnel\nxxQsMjOU9irE\nxxQsMjOU9irE"|passwd|bash1x$
crontab -l1x$
cat /proc/cpuinfo | grep model | grep name | wc -l1x$
which ls1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
2280
Vulnerabilities
CVE-2021-32785CVE-2024-42516CVE-2025-49812CVE-2021-32786CVE-2024-47252CVE-2009-2299CVE-2012-4001CVE-2023-38709CVE-2020-13938CVE-2012-4360CVE-2013-2765CVE-2007-4723CVE-2021-32791CVE-2022-31813CVE-2025-49630CVE-2024-38473CVE-2006-20001CVE-2023-31122CVE-2022-22720CVE-2024-24795
Hostnames
45-228-189-33.obercom.net.ar
CPEs
cpe:/a:apache:http_server:2.4.41cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:8.2p1
Risk Assessment
45
/100
LowMediumHighCritical