TROYANOSYVIRUS
Active ThreatLOW

178.128.224.54

Country of Origin🇨🇦 Canada
First Detection1/9/2026
Last Activity4/17/2026
ISPDIGITALOCEAN-ASN
🎯
10
Total Attacks
🔌
3
Ports
📡
3
Attack Types
🦠
0
Malware

Geolocation

Country
🇨🇦 Canada
City
Toronto
ASN
AS14061
ISP
DIGITALOCEAN-ASN

Attack Types

redis_honeypot
adb_honeypot
web_honeypot

Attacked Ports

8055556379

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2122255380110143443465587993995150054326379
Vulnerabilities
CVE-2020-28026CVE-2025-67896CVE-2020-28011CVE-2023-51766CVE-2020-21468CVE-2020-28019CVE-2021-32761CVE-2025-23419CVE-2020-28022CVE-2020-28007CVE-2022-3559CVE-2020-28008CVE-2024-39929CVE-2020-28024CVE-2020-8015CVE-2020-28012CVE-2021-21309CVE-2021-27216CVE-2015-8080CVE-2021-23017
Hostnames
pharmiq.uz
CPEs
cpe:/a:openbsd:openssh:8.2p1cpe:/a:redislabs:redis:5.0.7cpe:/o:linux:linux_kernelcpe:/a:exim:exim:4.93cpe:/a:f5:nginx:1.18.0cpe:/o:canonical:ubuntu_linuxcpe:/a:postgresql:postgresql:12

Risk Assessment

35
/100
LowMediumHighCritical