TROYANOSYVIRUS
Active ThreatMEDIUM

118.217.53.112

Country of Origin🇰🇷 South Korea
First Detection2/19/2026
Last Activity4/1/2026
ISPSK Broadband Co Ltd
🎯
15
Total Attacks
🔌
2
Ports
📡
2
Attack Types
🦠
1
Malware

Geolocation

Country
🇰🇷 South Korea
City
Seongnam-si
ASN
AS9318
ISP
SK Broadband Co Ltd

Attack Types

ssh_telnet_honeypot
web_honeypot

Attacked Ports

2380

Associated Malware

Attempted Credentials

🔐888888/888888
1x
🔐admin/password
1x
🔐root/pass
1x
🔐root/default
1x

Executed Commands

$system2x
$shell2x
$enable1x
$sh1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
20008291

Risk Assessment

45
/100
LowMediumHighCritical