Active Threat โข MEDIUM
81.161.229.152
Country of Origin๐ง๐ฌ BG
First Detection2/20/2026
Last Activity2/20/2026
ISPIomart Cloud Services Limited
๐ฏ
180
Total Attacks
๐
1
Ports
๐ก
1
Attack Types
๐ฆ
20
Malware
Geolocation
- Country
- ๐ง๐ฌ BG
- City
- Unknown
- ASN
- AS20860
- ISP
- Iomart Cloud Services Limited
Attack Types
cowrie
Attacked Ports
22
Associated Malware
Attempted Credentials
๐345gs5662d34/345gs5662d34
2x๐claude/claude123
1x๐bryan/bryan2025
1x๐root/nPSpP4PBW0
1x๐administrator7/123
1x๐root/LeitboGi0ro
1x๐root/3245gs5662d34
1x๐root/hacker123
1x๐claude/3245gs5662d34
1x๐oracle/Bmw_20!_^
1x๐root/M0nk3y
1x๐n8n/n8n
1x๐ubuntu/phoenix
1x๐root/09N1RCa1Hs31
1x๐ubuntu/Root2026
1xExecuted Commands
$
cd ~; chattr -ia .ssh; lockr -ia .ssh2x$
w2x$
lscpu | grep Model2x$
uname -a2x$
crontab -l2x$
Enter new UNIX password:2x$
df -h | head -n 2 | awk 'FNR == 2 {print $2;}'2x$
lockr -ia .ssh2x$
ls -lh $(which ls)2x$
cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'1xRisk Assessment
55
/100
LowMediumHighCritical