TROYANOSYVIRUS
Active ThreatHIGH

139.59.66.222

Country of Origin🇮🇳 India
First Detection2/21/2026
Last Activity4/5/2026
ISPDigitalOcean, LLC
🎯
140
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
3
Malware

Geolocation

Country
🇮🇳 India
City
Bengaluru
ASN
AS14061
ISP
DigitalOcean, LLC

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐root/minoxidil4you2017!
1x
🔐minoxidil4you/minoxidil4you!@#123
1x
🔐minoxidil4you/Minoxidil4you-01
1x
🔐root/Minoxidil4you.2023.
1x
🔐root/minoxidil4you1234
1x
🔐root/minoxidil4you2023!
1x
🔐%company%/qwerty1
1x
🔐root/minoxidil4you!#@
1x
🔐minoxidil4you/Minoxidil4you@12345
1x
🔐%company%/password?12345678
1x
🔐minoxidil4you/minoxidil4you#2023
1x
🔐minoxidil4you/Minoxidil4you123@
1x
🔐root/123root
1x
🔐minoxidil4you/minoxidil4you
1x
🔐root/faith
1x

Executed Commands

$uname -a1x
$export HOME=/dev/null;export HISTFILE=/dev/null;chattr -isa /root/.ssh/authorized_keys;echo 'ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQCYteFBiVVKhUucH8Jjuzlh9pNriiQJFagSbuI1FN5czogKvtyc/ayDvt2T7w5UMuo1kIYefBQRKc661934f6dd2a58NAIs7ehhoG56IVFPUdooUza00ziduX/8vgd29UmSZk8Y+7bAh0cP43C3N0/M6RlV8Qy2onqrF02RbeTu9tzhuBBJA//7ZHzoL/0dbGhwrGOrxSmqPnNO4VL/W8gOHYyDRSLPfUpTJNsP9AulmmQeaYXcQOZ4pFzMpiGZwSXJYw9xcrz7PMmMAcCOYbAWJYz9LT980nY3XgQb9QSKDoGuRlqm5HPdY2bipGgFwgwNGG0V4bQLCUMKudkq6oWL rsa-key-20250409' >>/root/1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
228054328080
Vulnerabilities
CVE-2025-23419CVE-2023-44487
CPEs
cpe:/a:nodejs:node.jscpe:/a:f5:nginx:1.24.0cpe:/o:linux:linux_kernelcpe:/a:postgresql:postgresqlcpe:/a:expressjs:expresscpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:9.6p1

Risk Assessment

60
/100
LowMediumHighCritical