TROYANOSYVIRUS
Active ThreatMEDIUM

149.202.37.76

Country of Origin🇫🇷 France
First Detection3/21/2026
Last Activity4/28/2026
ISPOVH SAS
🎯
16
Total Attacks
🔌
15
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇫🇷 France
City
Unknown
ASN
AS16276
ISP
OVH SAS

Attack Types

tcp_trap

Attacked Ports

590759125925593159385957596059625966596859795983598459895991

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
21222553801101434434655879939952082208320862087330680808087
Vulnerabilities
CVE-2025-23419CVE-2021-3618CVE-2023-44487
Hostnames
sorec.hedoma.mabackoffice-11x-x00.sorec.ma
CPEs
cpe:/a:exim:exim:4.99.1cpe:/a:postfix:postfixcpe:/a:cpanel:cpanelcpe:/o:canonical:ubuntu_linuxcpe:/a:f5:nginx:1.26.1cpe:/a:mariadb:mariadbcpe:/a:talend:restlet:2.2.2cpe:/a:f5:nginx:1.20.2cpe:/a:openbsd:openssh:7.2p2

Risk Assessment

40
/100
LowMediumHighCritical