TROYANOSYVIRUS
Active Threat β€’ HIGH

168.144.43.157

First Detection4/24/2026
Last Activity4/24/2026
ISPDigitalOcean, LLC
🎯
611
Total Attacks
πŸ”Œ
8
Ports
πŸ“‘
5
Attack Types
🦠
1
Malware

Geolocation

Country
πŸ‡ΈπŸ‡¬ Singapore
City
Singapore
ASN
AS14061
ISP
DigitalOcean, LLC

Attack Types

ssh_telnet_honeypot
medical_honeypot
redis_honeypot
malware_capture
tcp_trap

Attacked Ports

23172319112575326963791005027004

Associated Malware

Attempted Credentials

πŸ”b'\x05\x04\x00\x01\x02\x80\x05\x01\x00\x03'/google.comPGET / HTTP/1.0
1x
πŸ”b'<\x00K\x00\x00\x00 \x00\x00\x00\x00\x00\x00\x00\x00\x00\xff\xff\x00\x00'/b'\x04\xa0\xbeS\x03UR\x00\x00<\x00\x00\x00\x05\x00\x00\x00\x00\x00\x00\x00\x00\x00\x1a\x00<\x00\x00\x00\x00\x00'
1x
πŸ”Call-ID: 50000/CSeq: 42 OPTIONS
1x
πŸ”HELP/(empty)
1x
πŸ”Max-Forwards: 70/Content-Length: 0
1x
πŸ”Contact: <sip:nm@nm>/Accept: application/sdp
1x
πŸ”GET /nice%20ports%2C/Tri%6Eity.txt%2ebak HTTP/1.0/(empty)
1x
πŸ”b'0\x84\x00\x00\x00-\x02\x01\x07c\x84\x00\x00\x00$\x04\x00'/
1x
πŸ”From: <sip:nm@nm>;tag=root/To: <sip:nm2@nm2>
1x
πŸ”OPTIONS / HTTP/1.0/(empty)
1x
πŸ”GET /?CAVIT HTTP/1.1/(empty)
1x
πŸ”%-12345X@PJL INFO ID/%-12345X
1x
πŸ”GET / HTTP/1.0/(empty)
1x
πŸ”OPTIONS / RTSP/1.0/(empty)
1x
πŸ”OPTIONS sip:nm SIP/2.0/Via: SIP/2.0/TCP nm;branch=foo
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

70
/100
LowMediumHighCritical