Active ThreatLOW

5.237.214.109

Country of Origin🇮🇷 Iran
First Detection1/4/2026
Last Activity1/4/2026
ISPIran Telecommunication Company PJS
🎯
22
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇮🇷 Iran
City
Unknown
ASN
AS58224
ISP
Iran Telecommunication Company PJS

Attack Types

cowrie

Attacked Ports

23

Associated Malware

Attempted Credentials

🔐root/jvbzd
1x
🔐root/root
1x
🔐root/founder88
1x
🔐root/Zte521
1x
🔐tech/tech
1x

Executed Commands

$system2x
$shell2x
$sh1x
$cat /proc/mounts; /bin/busybox MHXSF1x
$cd /dev/shm; cat .s || cp /bin/echo .s; /bin/busybox MHXSF1x
$while read i1x
$enable1x
$tftp; wget; /bin/busybox MHXSF1x
$dd bs=52 count=1 if=.s || cat .s || while read i; do echo $i; done < .s1x

Risk Assessment

25
/100
LowMediumHighCritical