TROYANOSYVIRUS
Active ThreatLOW

112.124.1.210

Country of Origin🇨🇳 China
First Detection2/25/2026
Last Activity4/25/2026
ISPHangzhou Alibaba Advertising Co.,Ltd.
🎯
27
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇨🇳 China
City
Hangzhou
ASN
AS37963
ISP
Hangzhou Alibaba Advertising Co.,Ltd.

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
228044310809306
Vulnerabilities
CVE-2025-50083CVE-2025-50084CVE-2025-50104CVE-2025-50078CVE-2023-44487CVE-2024-21232CVE-2024-21237CVE-2024-21198CVE-2025-50082CVE-2024-21244CVE-2024-21231CVE-2024-21236CVE-2024-21239CVE-2025-50097CVE-2024-21218CVE-2025-50100CVE-2025-50095CVE-2025-23419CVE-2024-21241CVE-2021-3618
Hostnames
ztzxai.com
CPEs
cpe:/a:openbsd:openssh:8.2p1cpe:/a:f5:nginx:1.18.0cpe:/a:f5:nginx:1.27.2cpe:/o:linux:linux_kernelcpe:/o:canonical:ubuntu_linuxcpe:/a:oracle:mysql:9.0.1

Risk Assessment

25
/100
LowMediumHighCritical