TROYANOSYVIRUS
Active ThreatLOW

164.92.238.143

Country of Origin🇩🇪 Germany
First Detection4/25/2026
Last Activity4/25/2026
ISPDigitalOcean, LLC
🎯
24
Total Attacks
🔌
2
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇩🇪 Germany
City
Frankfurt am Main
ASN
AS14061
ISP
DigitalOcean, LLC

Attack Types

ssh_telnet_honeypot
tcp_trap

Attacked Ports

222222

Associated Malware

No associated malware

Attempted Credentials

🔐root/root
1x
🔐a/a
1x
🔐nil/(empty)
1x
🔐admin/admin
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2123804455131099212122223000666780098081818088889090
Vulnerabilities
CVE-2016-6292CVE-2022-31629CVE-2011-5000CVE-2009-4418CVE-2017-15906CVE-2010-3870CVE-2009-2687CVE-2008-2051CVE-2011-1464CVE-2022-37436CVE-2021-44790CVE-2023-51385CVE-2010-3867CVE-2008-3660CVE-2016-7416CVE-2021-46854CVE-2008-5557CVE-2008-4107CVE-2018-10546CVE-2012-3499
CPEs
cpe:/a:apache:http_server:2.4.66cpe:/o:debian:debian_linuxcpe:/a:oracle:jrecpe:/a:f5:nginx:1.25.4cpe:/a:proftpd:proftpd:1.3.1cpe:/a:php:php:8.5.2cpe:/a:jquery:jquery:2.2.4cpe:/a:openbsd:openssh:4.7p1cpe:/a:f5:nginx:1.29.2cpe:/o:canonical:ubuntu_linuxcpe:/a:apache:tomcatcpe:/o:linux:linux_kernelcpe:/a:php:php:5.2.4cpe:/a:cloudflare:cloudflarecpe:/a:apache:http_server:2.2.8

Risk Assessment

25
/100
LowMediumHighCritical