Active Threat β’ MEDIUM
74.91.224.229
Country of OriginπΈπ¬ Singapore
First Detection4/17/2026
Last Activity4/17/2026
ISPOracle Corporation
π―
178
Total Attacks
π
1
Ports
π‘
1
Attack Types
π¦
18
Malware
Geolocation
- Country
- πΈπ¬ Singapore
- City
- Loyang
- ASN
- AS31898
- ISP
- Oracle Corporation
Attack Types
ssh_telnet_honeypot
Attacked Ports
22
Associated Malware
Attempted Credentials
πdeploy/123qwe123
1xπsteam/Admin@123
1xπroot/abcd
1xπnuser/nuser
1xπroot/qwe2025
1xπteamspeak/teamspeak29!
1xπbbb/bbb
1xπadmin/1qazXSW@3edc
1xπjack/jackjack
1xπsammy/test
1xπgit/3245gs5662d34
1xπroot/123456-QWER
1xπpay/pay
1xπctf/ctf
1xπtest/Password01
1xExecuted Commands
$
Enter new UNIX password:2x$
ls -lh $(which ls)1x$
echo -e "passw0rd\n9qbvEib0k7an\n9qbvEib0k7an"|passwd|bash1x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1x$
uname -a1x$
w1x$
cat /proc/cpuinfo | grep name | wc -l1x$
crontab -l1x$
cat /proc/cpuinfo | grep model | grep name | wc -l1x$
echo "passw0rd\n9qbvEib0k7an\n9qbvEib0k7an\n"|passwd1xShodan InternetDB ExposureShodan
InternetDB data, not real-time
Ports
265380110111143443465587993995207920822083208620873306
Vulnerabilities
CVE-2024-3566CVE-2024-5458CVE-2024-25117CVE-2007-3205CVE-2022-4900CVE-2013-2220
Hostnames
www.urc.com.sgurc.com.sgv24006959.sin01.serveradd.com74-91-224-229.unifiedlayer.com
CPEs
cpe:/a:oracle:mysqlcpe:/a:apache:http_servercpe:/a:wordpress:wordpress:4.9.26cpe:/a:php:php:7.4.33cpe:/a:exim:exim:4.99.1
Risk Assessment
55
/100
LowMediumHighCritical