TROYANOSYVIRUS
Active ThreatLOW

178.128.245.197

Country of Origin🇳🇱 Netherlands
First Detection4/24/2026
Last Activity4/24/2026
ISPDigitalOcean, LLC
🎯
2
Total Attacks
🔌
2
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Amsterdam
ASN
AS14061
ISP
DigitalOcean, LLC

Attack Types

tcp_trap
web_honeypot

Attacked Ports

80443

Associated Malware

No associated malware

ThreatFox Intelabuse.ch

⚠️KNOWN C2 SERVER
Malware Families
apk.kimwolf
Threat Types
botnet_cc
Confidence: 100%

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22801233389
Vulnerabilities
CVE-2023-44487CVE-2025-23419
CPEs
cpe:/o:debian:debian_linuxcpe:/o:canonical:ubuntu_linuxcpe:/a:ntp:ntp:3cpe:/o:linux:linux_kernelcpe:/a:openbsd:openssh:6.7p1cpe:/a:f5:nginx:1.24.0

Risk Assessment

20
/100
LowMediumHighCritical