TROYANOSYVIRUS
Active ThreatCRITICAL

176.120.22.192

Country of Origin🇷🇺 Russia
First Detection3/27/2026
Last Activity4/20/2026
ISPProton66 OOO
🎯
49,439
Total Attacks
🔌
100
Ports
📡
8
Attack Types
🦠
0
Malware

Geolocation

Country
🇷🇺 Russia
City
Unknown
ASN
AS198953
ISP
Proton66 OOO

Attack Types

ssh_telnet_honeypot
medical_honeypot
redis_honeypot
malware_capture
printer_honeypot
ics_scada_honeypot
tcp_trap
dicom_honeypot

Attacked Ports

21234281135102410251028102910301031103210331034103510391042104310441045+80

Associated Malware

No associated malware

Attempted Credentials

🔐sa/unea5g
4x
🔐sa/(empty)
4x
🔐PRUEBA/PRUEBA
4x
🔐sqlagent/HellFire2050
3x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

80
/100
LowMediumHighCritical