TROYANOSYVIRUS
Active ThreatLOW

177.220.137.26

Country of Origin🇧🇷 Brazil
First Detection1/25/2026
Last Activity2/26/2026
ISPLigga Telecomunicacoes S.A.
🎯
14
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇧🇷 Brazil
City
Curitiba
ASN
AS14868
ISP
Ligga Telecomunicacoes S.A.

Attack Types

malware_capture

Attacked Ports

445

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22538010000
Vulnerabilities
CVE-2021-26691CVE-2024-38473CVE-2024-38477CVE-2013-0941CVE-2025-58098CVE-2017-15715CVE-2017-3169CVE-2022-37436CVE-2024-24795CVE-2016-8743CVE-2023-31122CVE-2009-0796CVE-2016-0736CVE-2011-2688CVE-2019-0217CVE-2014-8109CVE-2024-43394CVE-2007-4723CVE-2022-26377CVE-2016-4975
Hostnames
26.137.220.177.dynamic.liggatelecom.com.br
CPEs
cpe:/o:debian:debian_linuxcpe:/a:webmin:webmincpe:/a:openbsd:openssh:6.7p1cpe:/a:apache:http_server:2.4.10cpe:/o:linux:linux_kernel

Risk Assessment

25
/100
LowMediumHighCritical