TROYANOSYVIRUS
Active ThreatLOW

112.78.176.194

Country of Origin🇮🇩 Indonesia
First Detection12/31/2025
Last Activity3/30/2026
ISPBIZNET NETWORKS
🎯
37
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇮🇩 Indonesia
City
Tegal
ASN
AS17451
ISP
BIZNET NETWORKS

Attack Types

malware_capture

Attacked Ports

445

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
228044317011723200054328291
Vulnerabilities
CVE-2024-38473CVE-2024-25117CVE-2012-3526CVE-2022-31629CVE-2025-53020CVE-2025-68160CVE-2022-29404CVE-2023-0286CVE-2023-0465CVE-2025-65082CVE-2022-31813CVE-2024-42516CVE-2024-0727CVE-2009-2299CVE-2025-66200CVE-2024-38474CVE-2022-28614CVE-2023-3817CVE-2022-31625CVE-2026-22795
Hostnames
cmbl.reksafinance.co.id
CPEs
cpe:/a:php:php:7.4.29cpe:/a:f5:nginx:1.27.2cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:8.9p1cpe:/a:postgresql:postgresql:14cpe:/a:openssl:openssl:1.1.1ncpe:/a:apache:http_server:2.4.53

Risk Assessment

25
/100
LowMediumHighCritical