TROYANOSYVIRUS
Active Threat β€’ LOW

144.172.100.249

First Detection4/30/2026
Last Activity5/1/2026
ISPRouterHosting LLC
🎯
34
Total Attacks
πŸ”Œ
5
Ports
πŸ“‘
4
Attack Types
🦠
0
Malware

Geolocation

Country
πŸ‡ΊπŸ‡Έ United States
City
Las Vegas
ASN
AS14956
ISP
RouterHosting LLC

Attack Types

tcp_trap
ssh_telnet_honeypot
malware_capture
web_honeypot

Attacked Ports

2223804433306

Associated Malware

No associated malware

Attempted Credentials

πŸ”GET / HTTP/1.1/Host: 146.59.94.170:23
1x
πŸ”Accept-Encoding: gzip/Connection: close
1x
πŸ”User-Agent: Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:47.0) Gecko/20100101 Firefox/47.0/Accept-Charset: utf-8
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22
Hostnames
249.100.172.144.static.cloudzy.com
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:9.6p1

Risk Assessment

35
/100
LowMediumHighCritical