Active Threat β€’ MEDIUM

45.78.219.223

First Detection1/11/2026
Last Activity1/11/2026
ISPByteplus Pte. Ltd.
🎯
188
Total Attacks
πŸ”Œ
1
Ports
πŸ“‘
1
Attack Types
🦠
18
Malware

Geolocation

Country
πŸ‡ΈπŸ‡¬ Singapore
City
Singapore
ASN
AS150436
ISP
Byteplus Pte. Ltd.

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

πŸ”frappe/frappe12!
1x
πŸ”nexus/Nexus14!
1x
πŸ”bitrix/3245gs5662d34
1x
πŸ”test01/Test2024!@#
1x
πŸ”oracle/Oracle25!
1x
πŸ”frappe/Frappe16!
1x
πŸ”sftpuser/Sftpuser05!
1x
πŸ”test/test2026!@#
1x
πŸ”frappe/frappe25!
1x
πŸ”frappe/3245gs5662d34
1x
πŸ”bitrix/Bitrix01!
1x
πŸ”deploy/Deploy25!
1x
πŸ”test1/test2025!
1x
πŸ”ubuntu/ubuntu2024!@#
1x
πŸ”nexus/Nexus2024!@#
1x

Executed Commands

$lockr -ia .ssh2x
$cd ~; chattr -ia .ssh; lockr -ia .ssh2x
$cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x
$Enter new UNIX password: 1x
$uname -a1x
$w1x
$cat /proc/cpuinfo | grep name | wc -l1x
$echo "bitrix28!\nPTR5ZyrGKK0A\nPTR5ZyrGKK0A\n"|passwd1x
$crontab -l1x
$cat /proc/cpuinfo | grep model | grep name | wc -l1x

Risk Assessment

55
/100
LowMediumHighCritical
IP 45.78.219.223 - Detected Threat | TroyanosYVirus.com | TroyanosYVirus.com