TROYANOSYVIRUS
Active ThreatMEDIUM

124.220.11.234

Country of Origin🇨🇳 China
First Detection1/11/2026
Last Activity4/14/2026
ISPShenzhen Tencent Computer Systems Company Limited
🎯
23
Total Attacks
🔌
3
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇨🇳 China
City
Shanghai
ASN
AS45090
ISP
Shenzhen Tencent Computer Systems Company Limited

Attack Types

ssh_telnet_honeypot
tcp_trap

Attacked Ports

22232222

Associated Malware

No associated malware

Attempted Credentials

🔐admin/admin
2x
🔐orangepi/orangepi
1x
🔐root/P
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
3306
Vulnerabilities
CVE-2025-50091CVE-2024-21241CVE-2021-35608CVE-2022-21358CVE-2022-21417CVE-2022-21604CVE-2022-21633CVE-2023-22028CVE-2022-21412CVE-2022-21324CVE-2023-21977CVE-2022-21355CVE-2022-21326CVE-2024-20965CVE-2022-21314CVE-2023-21878CVE-2022-21321CVE-2022-21285CVE-2022-21425CVE-2024-21051
CPEs
cpe:/a:oracle:mysql:8.0.26

Risk Assessment

40
/100
LowMediumHighCritical