TROYANOSYVIRUS
Active ThreatHIGH

185.196.11.90

Country of Origin🇫🇷 France
First Detection2/1/2026
Last Activity3/29/2026
ISPOVH SAS
🎯
984
Total Attacks
🔌
25
Ports
📡
3
Attack Types
🦠
0
Malware

Geolocation

Country
🇫🇷 France
City
Unknown
ASN
AS16276
ISP
OVH SAS

Attack Types

malware_capture
web_honeypot
tcp_trap

Attacked Ports

8081205180008001800280038005800880098081808580868088809081008181830085008686+5

Associated Malware

No associated malware

ThreatFox Intelabuse.ch

⚠️KNOWN C2 SERVER
Malware Families
win.havocwin.cobalt_strike
Threat Types
botnet_cc
Confidence: 100%

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22
CPEs
cpe:/a:openbsd:openssh:8.2p1cpe:/o:canonical:ubuntu_linux

Risk Assessment

70
/100
LowMediumHighCritical