Red Piranha Threat Intelligence Report - Sept. 17-23 2017



TOP 10 ATTACKER (BY COUNTRY)

Top Attacker - United States of America

1



TOP 9 ATTACKER (BY HOST)

Top Attacker - 221.194.47.242

2



Detailed Report on Suspicious hosts


Behavior: Scanning hosts

Activity: Continuously using different username password combination existing and non-existing usernames.

We have found following different types of events:

SSHD authentication failed.

Multiple SSHD authentication failures.

Multiple failed logins in a small period of time.

SSH insecure connection attempt (scan).

Failed Password

Invalid User

Input userauth request invalid user

Type of attack: Bruteforce

Source IP Addresses:

221.194.47.242 5.101.40.10 141.212.122.48

198.98.57.32 , 41.78.78.66 , 103.79.141.161

201.16.246.98 , 103.79.143.60 , 103.79.141.145


TOP OTX Activity

3


Threat GEO Location

4
Details
Date Published
September 23, 2017