Active Threat β’ MEDIUM
47.254.30.91
Country of OriginπΊπΈ United States
First Detection3/6/2026
Last Activity3/20/2026
ISPAlibaba US Technology Co., Ltd.
π―
4,868
Total Attacks
π
1
Ports
π‘
1
Attack Types
π¦
2
Malware
Geolocation
- Country
- πΊπΈ United States
- City
- Unknown
- ASN
- AS45102
- ISP
- Alibaba US Technology Co., Ltd.
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
πroot/1234567
4xπroot/root2222
4xπroot/rootadmin
4xπroot/root@123
4xπroot/root
4xπadmin/letmein
4xπroot/root9999
4xπpostgres/admin
4xπroot/1q2w3e
4xπtest/12345
4xπtest/123456789
4xπoracle/oracle
4xπroot/r00t
4xπpostgres/password
4xπadmin/Admin@123
4xExecuted Commands
$
cat /proc/uptime 2 > /dev/null | cut -d. -f120x$
uname -s -v -n -m 2 > /dev/null10x$
uname -m 2 > /dev/null10x$
export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:$PATH; uname=$(uname -s -v -n -m 2>/dev/null); arch=$(uname -m 2>/dev/null); uptime=$(cat /proc/uptime 2>/dev/null | cut -d. -f1); cpus=$( (nproc 2>/dev/null || /usr/bin/nproc 2>/dev/null || grep -c "^processor" /proc/cpuinfo 2>/dev/null) | head -1); cpu_model=$( (grep -m1 -E "model name|Hardware" /proc/cpuinfo | cut -d: -f2- | sed 's/^ *//;s/ *$//' ; lscpu 2>/dev/null | awk -F: '/Model name/ {gsub(/^ +| +$/,"",$2); print $10xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Risk Assessment
55
/100
LowMediumHighCritical