TROYANOSYVIRUS
Active Threat • LOW

179.191.94.2

Country of Origin🇧🇷 Brazil
First Detection1/10/2026
Last Activity1/12/2026
ISPMUNDIVOX DO BRASIL LTDA
🎯
5
Total Attacks
🔌
2
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇧🇷 Brazil
City
São Paulo
ASN
AS17222
ISP
MUNDIVOX DO BRASIL LTDA

Attack Types

tcp_trap
web_honeypot

Attacked Ports

804646

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
804435418443
Vulnerabilities
CVE-2016-7413CVE-2017-12933CVE-2017-9224CVE-2016-6297CVE-2015-4605CVE-2013-4635CVE-2011-4885CVE-2025-23048CVE-2011-1176CVE-2025-59775CVE-2016-10712CVE-2015-3412CVE-2016-9933CVE-2011-3368CVE-2014-2020CVE-2016-7132CVE-2011-3267CVE-2012-3365CVE-2017-3167CVE-2016-3171
Hostnames
nextcloud.jljempresas.com.br
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/o:fortinet:fortioscpe:/a:apache:http_server:2.2.11cpe:/a:php:php:5.3.0cpe:/a:apache:http_server:2.4.41

Risk Assessment

25
/100
LowMediumHighCritical