← Back to feed

120.48.22.91

TAGGED MALICIOUS how we decide →
Threat Confidence
59%
Location
🇨🇳 CN / Beijing
ASN
AS38365 · Beijing Baidu Netcom Science and Technology Co., Ltd.
Cloud Provider
Total Events
10
Below average by volume
Agent Count
2
First / Last Seen
2026-06-09 01:20 — 2026-06-13 16:37
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Exfiltration
External Corroboration
Blocklist.de
Reported 2026-06-13 20:03
blocklist_de:reported
Campaigns
Multi-Agent Scan SCAN Active medium
17 IPs 42708 events
2026-04-27 — ongoing · 17 IPs independently targeted the same honeypot sensors within a 24-hour window. Scanning the same targets in close …
Multi-Agent Scan SCAN Active medium
94 IPs 68208 events
2026-04-13 — ongoing · 94 IPs independently targeted the same honeypot sensors within a 24-hour window. Hosted on Azure. Scanning the same …
Multi-Agent Scan SCAN Active medium
69 IPs 111841 events
2026-04-04 — ongoing · 69 IPs independently targeted the same honeypot sensors within a 24-hour window. Scanning the same targets in close …
Multi-Agent Scan SCAN Active medium
72 IPs 144043 events
2026-02-27 — ongoing · 72 IPs independently targeted the same honeypot sensors within a 24-hour window. Hosted on DO. Scanning the same …
Multi-Agent Scan SCAN Active medium
41 IPs 67946 events
2026-02-27 — ongoing · 41 IPs independently targeted the same honeypot sensors within a 24-hour window. Scanning the same targets in close …
Multi-Agent Scan SCAN Active medium
78 IPs 143118 events
2026-02-27 — ongoing · 78 IPs independently targeted the same honeypot sensors within a 24-hour window. Scanning the same targets in close …
Multi-Agent Scan SCAN Active medium
102 IPs 245836 events
2026-02-27 — ongoing · 102 IPs independently targeted the same honeypot sensors within a 24-hour window. Scanning the same targets in close …
AS38365 Beijing Baidu Netcom Science and Technology Co., Ltd. ASN Active medium 🇨🇳 CN
32 IPs 2370 events
ssh:bruteforce
2026-02-18 — ongoing · 32 IPs from the same network (Beijing Baidu Netcom Science and Technology Co., Ltd., AS38365) were active during …
Session Forensics
scanner ×1 data_exfiltrator ×2
Sessions
3 (2 with login)
Avg Depth Score
0.65
Commands Executed
0
Files Downloaded
0
Fingerprints
SSH-2.0-Go
Evidence Timeline
Scanner 223174d288bf w4m_singapore_01 · 2026-06-13 16:35
15%
Loading events...
Data Exfiltrator 07f8fd07877c newark_01 · 2026-06-12 20:21
1 90%
Loading events...
Data Exfiltrator 0608b19438f1 newark_01 · 2026-06-09 01:20
1 90%
Loading events...