TROYANOSYVIRUS
Active ThreatLOW

171.232.91.157

Country of Origin🇻🇳 Vietnam
First Detection5/4/2026
Last Activity5/4/2026
ISPViettel Group
🎯
36
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇻🇳 Vietnam
City
Ho Chi Minh City
ASN
AS7552
ISP
Viettel Group

Attack Types

ssh_telnet_honeypot

Attacked Ports

23

Associated Malware

Attempted Credentials

🔐admin/BrAhMoS@15
2x
🔐root/root
1x
🔐root/Admin
1x
🔐admin/setup
1x
🔐MGR/WORD
1x
🔐default/12345
1x
🔐admin/4321
1x
🔐root/hkipc2016
1x
🔐support/cisco
1x
🔐default/OxhlwSG8
1x
🔐admin/admin
1x
🔐bbsd-client/changeme2database
1x
🔐admin/hp.com
1x
🔐root/klv1234
1x
🔐root/system
1x

Executed Commands

$system2x
$shell2x
$enable1x
$sh1x
$/bin/busybox cat /proc/self/exe || cat /proc/self/exe1x
$cat /proc/self/exe1x
$ping; sh1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
443
Hostnames
dynamic-ip-adsl.viettel.vn

Risk Assessment

25
/100
LowMediumHighCritical